#python-package

[ follow ]
#cybersecurity
fromThe Hacker News
1 week ago
Information security

TeamPCP Backdoors LiteLLM Versions 1.82.7-1.82.8 Likely via Trivy CI/CD Compromise

TeamPCP compromised the litellm Python package, embedding malicious versions that include a credential harvester and a persistent backdoor.
fromCSO Online
9 months ago
Information security

Malicious PyPI package targets Chimera users to steal AWS tokens, CI/CD secrets

A malicious Python package on PyPI targets sensitive corporate credentials, posing significant risks to software supply chains.
Information security
fromThe Hacker News
1 week ago

TeamPCP Backdoors LiteLLM Versions 1.82.7-1.82.8 Likely via Trivy CI/CD Compromise

TeamPCP compromised the litellm Python package, embedding malicious versions that include a credential harvester and a persistent backdoor.
[ Load more ]