Reports
Long-form, citation-grounded write-ups. Every factual claim carries its source inline.
- LiteLLM PyPI Supply Chain Attack: Admin Guide and Incident TrackerMarch 24, 2026 ยท archived snapshot
On March 24, 2026, LiteLLM 1.82.7 and 1.82.8 on PyPI were backdoored by TeamPCP using stolen CI/CD credentials. The malware harvested SSH keys, cloud credentials, API keys, and crypto wallets. Written for LiteLLM admins: is it safe to update, and what should you check and rotate?