▸ AI/LLM · Snyk
LiteLLM Supply Chain Attack Hits 97M Monthly Downloads
On March 24, 2026, threat actor TeamPCP compromised LiteLLM versions 1.82.7 and 1.82.8 on PyPI with credential-stealing malware. The attack targeted the most popular open-source LLM proxy used to route API calls to 100+ AI providers, and Wiz reports the library is present in 36% of all cloud environments. The malicious packages were quarantined after approximately three hours, but the payload harvested SSH keys, cloud credentials, and API keys.
The bottom line: If your AI infrastructure or CI/CD pipelines use LiteLLM, rotate all credentials immediately—this attack specifically targeted the central gateway where organizations store their entire LLM API key portfolio.