Cracked PyPI wheel with glowing green backdoor hatch, broken Trivy shield, and red Kubernetes nodes showing LiteLLM supply-chain attack

LiteLLM PyPI Supply Chain Attack: 40,000 Backdoored Downloads

A threat group called TeamPCP poisoned the Trivy GitHub Action to steal LiteLLM’s PyPI publishing token, then pushed two backdoored versions that harvested cloud credentials, SSH keys, and Kubernetes tokens from over 40,000 downloads. The LiteLLM PyPI supply chain attack is now tracked as CVE-2026-33634 with a CVSS score of 9.4. Here’s the full attack chain, what was stolen, and exactly what to do now.

LiteLLM PyPI Supply Chain Attack: 40,000 Backdoored Downloads Read More ยป