Today's Core Dump is brought to you by ThreatPerspective

The Hacker News

TeamPCP Backdoors LiteLLM Versions 1.82.7 1.82.8 via Trivy CI/CD Compromise

TeamPCP, the threat actor behind the recent compromises of Trivy and KICS, has now compromised a popular Python package named litellm, pushing two malicious versions containing a credential harvester, a Kubernetes lateral movement toolkit, and a persistent backdoor. Multiple security vendors, including Endor Labs and JFrog, revealed that litellm versions 1.82.7 and 1.82.8 were published on

Published: 2026-03-24T23:51:00











© Segmentation Fault . All rights reserved.

Privacy | Terms of Use | Contact Us