Skip to main content
← All Articles

Tag

#PyPI

29 articles

Advertisement

Telnyx PyPI Package Compromised by TeamPCP via Steganography
HIGH
Supply Chain

Telnyx PyPI Package Compromised by TeamPCP via Steganography

TeamPCP threat actors distributed malicious Telnyx Python package versions 4.87.1 and 4.87.2 on PyPI to harvest credentials using hidden WAV files.

Runtime Rebel Intel
4 min read · Mar 27, 2026
HIGH
Supply Chain

TeamPCP Supply Chain Attack: Telnyx PyPI Compromise and Vect Ransomware

TeamPCP campaign escalates with Telnyx PyPI compromise and Vect Ransomware mass affiliate program. Critical update for software developers and SOC teams.

Runtime Rebel Intel
4 min read · Mar 27, 2026
HIGH
Supply Chain

TeamPCP Supply Chain: Checkmarx Wider Scope & LiteLLM PyPI Compromise

An update on the TeamPCP supply chain campaign details wider Checkmarx impact, LiteLLM PyPI compromise, and a CISA KEV entry.

Runtime Rebel Intel
5 min read · Mar 26, 2026
HIGH
Supply Chain

LiteLLM PyPI Supply Chain Attack: TeamPCP Steals Credentials

TeamPCP compromised the LiteLLM PyPI package, backdooring it to steal credentials and auth tokens from hundreds of thousands of devices.

Runtime Rebel Intel
5 min read · Mar 25, 2026
GlassWorm: Stolen GitHub Tokens Fuel Python Malware Injection
HIGH
Supply Chain

GlassWorm: Stolen GitHub Tokens Fuel Python Malware Injection

The GlassWorm campaign uses stolen GitHub tokens to inject malicious code into Python repositories, including Django and machine learning projects.

Runtime Rebel Intel
3 min read · Mar 16, 2026