CVE Tools
Back to feed
Exploited in the wild LiteLLM TeamPCP supply-chain Trivy PyPI

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

The Hacker News·By The Hacker News··5 min read
CVE Tools coverage

Threat intelligence firm CloudSEK has released a public dataset indicating that the recent TeamPCP (UNC6780) supply-chain campaign may have affected over 2,500 organizations via compromised releases of the LiteLLM AI gateway and Aqua Security's Trivy scanner. The incident, tracked as CVE-2026-33634, involved malicious versions 1.82.7 and 1.82.8 of LiteLLM hosted on PyPI from March 24 until quarantine, containing code that harvested cloud keys, SSH credentials, and Kubernetes tokens.

The FBI has warned that stolen long-lived secrets remain a persistent risk, urging organizations to audit their environments for these specific package versions installed between 10:39 and 16:00 UTC on March 24. Affected entities should rotate all associated credentials and scan GitHub repositories for suspicious artifacts named tpcp-docs or docs-tpcp.