This page may contain stale information. Last updated: 2026-08-14
Overview
TeamPCP is a threat actor group (emerged late 2025; often described as young but highly capable) linked to cascading open-source supply-chain attacks including Trivy, LiteLLM, KICS, and Telnyx Python SDK.
Recent Developments
- 2026-03: Compromises Trivy → steals LiteLLM PyPI tokens → publishes backdoored 1.82.7/1.82.8
- 2026-08: Fallout archive analyzed publicly; FBI FLASH notes long-lived credential risk