Threat Intelligence Brief
Curated summary with source attribution
Source: thehackernews.com
Threat Risk: High
Victim: Organizations using the LiteLLM AI gateway
Incident: Supply chain compromise of LiteLLM packages on PyPI used to exfiltrate environment secrets.
Impact: Potential exposure of high-value credentials for over 2,500 organizations.
Attacker: TeamPCP
Analysis: Attackers uploaded malicious versions of LiteLLM to PyPI that executed credential-stealing code via a .pth file during Python startup. The campaign, linked to the TeamPCP actor, specifically harvested long-lived secrets including SSH keys and Kubernetes tokens. CloudSEK’s analysis of exfiltrated data indicates potential exposure across more than 2,500 organizations.
Recommendations: Rotate all cloud, SSH, and database credentials used during the March 24 window.; Audit environment logs for installations of LiteLLM versions 1.82.7 or 1.82.8.; Scan GitHub organizations for unauthorized repositories containing ‘tpcp-docs’ prefixes.
Source: The Hacker News
Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source