This page may contain stale information. Last updated: 2026-08-14

Overview

TeamPCP is a threat actor group (emerged late 2025; often described as young but highly capable) linked to cascading open-source supply-chain attacks including Trivy, LiteLLM, KICS, and Telnyx Python SDK.

Recent Developments

  • 2026-03: Compromises Trivy → steals LiteLLM PyPI tokens → publishes backdoored 1.82.7/1.82.8
  • 2026-08: Fallout archive analyzed publicly; FBI FLASH notes long-lived credential risk

Sources