<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #PyPI</title><description>Cybersecurity articles tagged #PyPI on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Malicious LiteLLM PyPI Releases Steal Cloud Credentials via TeamPCP</title><link>https://runtimerebel.com/blog/malicious-litellm-pypi-releases-steal-cloud-credentials-via-teampcp</link><guid isPermaLink="true">https://runtimerebel.com/blog/malicious-litellm-pypi-releases-steal-cloud-credentials-via-teampcp</guid><description>Malicious LiteLLM PyPI releases 1.82.7 and 1.82.8 exfiltrated cloud keys, SSH keys, and tokens from 2,100+ organizations in the TeamPCP supply chain campaign.</description><pubDate>Wed, 12 Aug 2026 09:02:31 GMT</pubDate><category>LiteLLM</category><category>PyPI</category><category>Supply Chain Attack</category><category>TeamPCP</category><category>Credential Theft</category></item><item><title>Python Supply Chain: Malicious Packages Targeting Developers</title><link>https://runtimerebel.com/blog/python-supply-chain-malicious-packages-targeting-developers</link><guid isPermaLink="true">https://runtimerebel.com/blog/python-supply-chain-malicious-packages-targeting-developers</guid><description>Malicious Python packages exploit trusted ecosystems like PyPI, enabling supply chain attacks on developer systems. Learn about the threat and mitigation.</description><pubDate>Sun, 09 Aug 2026 00:59:54 GMT</pubDate><category>Python</category><category>Supply Chain Attack</category><category>PyPI</category><category>Malware</category><category>Software Supply Chain</category></item><item><title>Anthropic Claude AI Incident: PyPI Malware &amp; Supply Chain Risks</title><link>https://runtimerebel.com/blog/anthropic-claude-ai-incident-pypi-malware-supply-chain-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/anthropic-claude-ai-incident-pypi-malware-supply-chain-risks</guid><description>A security evaluation of Anthropic&apos;s Claude AI model led to a significant breach, uploading malicious Python packages and compromising 3 organizations.</description><pubDate>Fri, 31 Jul 2026 02:55:12 GMT</pubDate><category>Anthropic</category><category>Claude AI</category><category>PyPI</category><category>Malware</category><category>Supply Chain Attack</category><category>AI Security</category><category>Credential Theft</category></item><item><title>GitHub and PyPI Policy Updates Target Supply Chain Security</title><link>https://runtimerebel.com/blog/github-and-pypi-policy-updates-target-supply-chain-security</link><guid isPermaLink="true">https://runtimerebel.com/blog/github-and-pypi-policy-updates-target-supply-chain-security</guid><description>GitHub and PyPI introduce new restrictions to thwart supply chain attacks, including a Dependabot cooldown and limits on historical package file uploads.</description><pubDate>Mon, 27 Jul 2026 14:40:00 GMT</pubDate><category>GitHub</category><category>PyPI</category><category>Supply Chain Security</category><category>Dependabot</category><category>Open Source</category></item><item><title>GitHub and PyPI Time-Based Defenses Against Supply Chain Attacks</title><link>https://runtimerebel.com/blog/github-and-pypi-time-based-defenses-against-supply-chain-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/github-and-pypi-time-based-defenses-against-supply-chain-attacks</guid><description>GitHub and PyPI introduce time-based delays in Dependabot to mitigate supply chain attacks by preventing the immediate ingestion of malicious packages.</description><pubDate>Sun, 26 Jul 2026 17:03:02 GMT</pubDate><category>GitHub</category><category>PyPI</category><category>Dependabot</category><category>Supply Chain Security</category><category>Python</category></item><item><title>Fake Paysafe/Skrill SDKs on npm &amp; PyPI Steal Credentials</title><link>https://runtimerebel.com/blog/fake-paysafe-skrill-sdks-on-npm-pypi-steal-credentials</link><guid isPermaLink="true">https://runtimerebel.com/blog/fake-paysafe-skrill-sdks-on-npm-pypi-steal-credentials</guid><description>Malicious packages impersonating Paysafe and Skrill SDKs on npm and PyPI platforms are stealing credentials from developers and users. Threat intelligence analysis.</description><pubDate>Wed, 08 Jul 2026 21:35:17 GMT</pubDate><category>NPM</category><category>PyPI</category><category>Supply Chain Attack</category><category>Credential Theft</category><category>Paysafe</category><category>Skrill</category><category>Neteller</category><category>Malware</category></item><item><title>Shai-Hulud Attack: Trojanized PyPI Packages Steal Developer Secrets</title><link>https://runtimerebel.com/blog/shai-hulud-attack-trojanized-pypi-packages-steal-developer-secrets</link><guid isPermaLink="true">https://runtimerebel.com/blog/shai-hulud-attack-trojanized-pypi-packages-steal-developer-secrets</guid><description>New Shai-Hulud supply chain attack compromises 19 science-focused PyPI packages, distributing malware to steal developer credentials and secrets.</description><pubDate>Mon, 08 Jun 2026 20:57:57 GMT</pubDate><category>Shai Hulud</category><category>PyPI</category><category>Supply Chain Attack</category><category>Malware</category><category>Developer Secrets</category><category>Python</category><category>Open Source Security</category></item><item><title>Shai-Hulud Campaign: TeamPCP Targets Open-Source Supply Chain</title><link>https://runtimerebel.com/blog/shai-hulud-campaign-teampcp-targets-open-source-supply-chain</link><guid isPermaLink="true">https://runtimerebel.com/blog/shai-hulud-campaign-teampcp-targets-open-source-supply-chain</guid><description>Analysis of the Shai-Hulud campaign by TeamPCP, detailing their open-source supply chain attacks, TTPs, and critical mitigation strategies.</description><pubDate>Tue, 26 May 2026 20:47:57 GMT</pubDate><category>TeamPCP</category><category>Shai Hulud</category><category>Supply Chain Attack</category><category>Open Source Security</category><category>NPM</category><category>PyPI</category><category>Malicious Packages</category></item><item><title>TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-attack-targets-microsoft-sdks-and-github</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-attack-targets-microsoft-sdks-and-github</guid><description>TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.</description><pubDate>Mon, 25 May 2026 16:52:00 GMT</pubDate><category>TeamPCP</category><category>Supply Chain Attack</category><category>Python SDK</category><category>GitHub</category><category>PyPI</category><category>NPM</category></item><item><title>TrapDoor Campaign: Detecting Cross-Ecosystem Supply Chain Attacks</title><link>https://runtimerebel.com/blog/trapdoor-campaign-detecting-cross-ecosystem-supply-chain-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/trapdoor-campaign-detecting-cross-ecosystem-supply-chain-attacks</guid><description>The TrapDoor campaign targets npm, PyPI, and Crates.io with over 384 malicious versions designed to exfiltrate developer credentials and sensitive data.</description><pubDate>Mon, 25 May 2026 09:28:16 GMT</pubDate><category>Trapdoor</category><category>NPM</category><category>PyPI</category><category>Crates Io</category><category>Credential Theft</category><category>Software Supply Chain</category></item><item><title>TeamPCP Jenkins Plugin Compromise and Mini Shai-Hulud Worm Analysis</title><link>https://runtimerebel.com/blog/teampcp-jenkins-plugin-compromise-and-mini-shai-hulud-worm-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-jenkins-plugin-compromise-and-mini-shai-hulud-worm-analysis</guid><description>TeamPCP escalates its supply chain campaign with a confirmed Jenkins plugin compromise and a self-spreading worm targeting the npm and PyPI ecosystems.</description><pubDate>Mon, 18 May 2026 20:38:04 GMT</pubDate><category>TeamPCP</category><category>Jenkins</category><category>NPM</category><category>PyPI</category><category>Mini Shai Hulud</category><category>Supply Chain Attack</category></item><item><title>Developer Workstations: The New Front in Software Supply Chain Attacks</title><link>https://runtimerebel.com/blog/developer-workstations-the-new-front-in-software-supply-chain-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/developer-workstations-the-new-front-in-software-supply-chain-attacks</guid><description>A surge in attacks targeting npm, PyPI, and Docker Hub highlights a shift toward stealing developer credentials and API keys from workstations and CI/CD pipelines.</description><pubDate>Mon, 18 May 2026 13:23:15 GMT</pubDate><category>NPM</category><category>PyPI</category><category>Docker Hub</category><category>CI CD Security</category><category>Credential Theft</category><category>Developer Security</category></item><item><title>OpenAI Breach: TanStack Supply Chain Attack Impacts Employee Devices</title><link>https://runtimerebel.com/blog/openai-breach-tanstack-supply-chain-attack-impacts-employee-devices</link><guid isPermaLink="true">https://runtimerebel.com/blog/openai-breach-tanstack-supply-chain-attack-impacts-employee-devices</guid><description>OpenAI confirms two employee devices compromised in a TanStack supply chain attack affecting npm and PyPI packages, prompting certificate rotation.</description><pubDate>Thu, 14 May 2026 20:37:10 GMT</pubDate><category>OpenAI</category><category>TanStack</category><category>Supply Chain Attack</category><category>NPM</category><category>PyPI</category><category>Certificate Rotation</category></item><item><title>Shai-Hulud Supply Chain Attack: Malicious npm and Mistral Packages</title><link>https://runtimerebel.com/blog/shai-hulud-supply-chain-attack-malicious-npm-and-mistral-packages</link><guid isPermaLink="true">https://runtimerebel.com/blog/shai-hulud-supply-chain-attack-malicious-npm-and-mistral-packages</guid><description>The Shai-Hulud campaign targets developers with over 300 signed npm and PyPI packages impersonating TanStack and Mistral to steal sensitive credentials.</description><pubDate>Tue, 12 May 2026 12:48:53 GMT</pubDate><category>Shai Hulud</category><category>NPM</category><category>PyPI</category><category>Supply Chain Attack</category><category>Mistral AI</category><category>TanStack</category><category>Credential Stealer</category></item><item><title>Mini Shai-Hulud Worm Compromises TanStack and Mistral AI Packages</title><link>https://runtimerebel.com/blog/mini-shai-hulud-worm-compromises-tanstack-and-mistral-ai-packages</link><guid isPermaLink="true">https://runtimerebel.com/blog/mini-shai-hulud-worm-compromises-tanstack-and-mistral-ai-packages</guid><description>TeamPCP actor compromises major npm and PyPI packages including TanStack and Mistral AI via the Mini Shai-Hulud worm, deploying profiling malware.</description><pubDate>Tue, 12 May 2026 09:04:37 GMT</pubDate><category>TeamPCP</category><category>Mini Shai Hulud</category><category>NPM</category><category>PyPI</category><category>Supply Chain Attack</category></item><item><title>PyPI Supply Chain Threat: Deceptive Packages Target Developers</title><link>https://runtimerebel.com/blog/pypi-supply-chain-threat-deceptive-packages-target-developers</link><guid isPermaLink="true">https://runtimerebel.com/blog/pypi-supply-chain-threat-deceptive-packages-target-developers</guid><description>Analysis of malicious Python packages such as cryptography-util using deceptive naming to exfiltrate Discord tokens and system metadata via webhooks.</description><pubDate>Mon, 11 May 2026 05:25:24 GMT</pubDate><category>PyPI</category><category>Python</category><category>Supply Chain Attack</category><category>Malware</category><category>Discord Webhooks</category></item><item><title>Backdoored PyTorch Lightning Package Drops Credential Stealer</title><link>https://runtimerebel.com/blog/backdoored-pytorch-lightning-package-drops-credential-stealer</link><guid isPermaLink="true">https://runtimerebel.com/blog/backdoored-pytorch-lightning-package-drops-credential-stealer</guid><description>A malicious PyTorch Lightning package on PyPI delivers a credential stealer, targeting browser data, environment variables, and cloud service credentials.</description><pubDate>Mon, 04 May 2026 20:35:32 GMT</pubDate><category>PyTorch Lightning</category><category>PyPI</category><category>Credential Stealer</category><category>Supply Chain Attack</category><category>Python</category><category>Malware</category></item><item><title>PyTorch Lightning 2.6.2/2.6.3 Compromise: Credential Theft Via Supply Chain</title><link>https://runtimerebel.com/blog/pytorch-lightning-2-6-2-2-6-3-compromise-credential-theft-via-supply-chain</link><guid isPermaLink="true">https://runtimerebel.com/blog/pytorch-lightning-2-6-2-2-6-3-compromise-credential-theft-via-supply-chain</guid><description>Threat actors injected malicious code into PyTorch Lightning versions 2.6.2 and 2.6.3 on PyPI, enabling credential theft via a supply chain attack.</description><pubDate>Thu, 30 Apr 2026 20:29:55 GMT</pubDate><category>PyTorch Lightning</category><category>Supply Chain Attack</category><category>Credential Theft</category><category>PyPI</category><category>Python Package</category><category>Software Security</category></item><item><title>TeamPCP Supply Chain: Checkmarx KICS, Bitwarden CLI, xinference PyPI Attacks</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-checkmarx-kics-bitwarden-cli-xinference-pypi-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-checkmarx-kics-bitwarden-cli-xinference-pypi-attacks</guid><description>TeamPCP resumes supply chain attacks with new compromises targeting Checkmarx KICS, Bitwarden CLI, and xinference PyPI. UNC6780 credential theft campaign continues.</description><pubDate>Mon, 27 Apr 2026 16:42:13 GMT</pubDate><category>TeamPCP</category><category>UNC6780</category><category>SANDCLOCK</category><category>Supply Chain Attack</category><category>Checkmarx KICS</category><category>Bitwarden CLI</category><category>Xinference PyPI</category><category>NPM</category><category>PyPI</category><category>Credential Theft</category><category>CVE-2026-33634</category></item><item><title>Malicious PyPI Package elementary-data Hijacked for Infostealer</title><link>https://runtimerebel.com/blog/malicious-pypi-package-elementary-data-hijacked-for-infostealer</link><guid isPermaLink="true">https://runtimerebel.com/blog/malicious-pypi-package-elementary-data-hijacked-for-infostealer</guid><description>High-profile supply chain attack on the elementary-data PyPI package compromises developer credentials and crypto wallets via account takeover. Patch now.</description><pubDate>Mon, 27 Apr 2026 16:40:27 GMT</pubDate><category>PyPI</category><category>Elementary Data</category><category>Infostealer</category><category>Python Security</category><category>Account Takeover</category></item><item><title>litellm 1.82.8 Supply Chain Compromise via Malicious .pth File</title><link>https://runtimerebel.com/blog/litellm-1-82-8-supply-chain-compromise-via-malicious-pth-file</link><guid isPermaLink="true">https://runtimerebel.com/blog/litellm-1-82-8-supply-chain-compromise-via-malicious-pth-file</guid><description>Security analysis of a supply chain compromise in litellm 1.82.8 on PyPI, where a malicious .pth file enables automatic code execution on Python startup.</description><pubDate>Wed, 08 Apr 2026 12:29:28 GMT</pubDate><category>LiteLLM</category><category>PyPI</category><category>Supply Chain Attack</category><category>Python</category><category>RCE</category></item><item><title>North Korean Hackers Distribute 1,700 Malicious Packages via npm and PyPI</title><link>https://runtimerebel.com/blog/north-korean-hackers-distribute-1700-malicious-packages-via-npm-and-pypi</link><guid isPermaLink="true">https://runtimerebel.com/blog/north-korean-hackers-distribute-1700-malicious-packages-via-npm-and-pypi</guid><description>North Korean threat actors expand the Contagious Interview campaign, deploying 1,700 malicious packages across npm, PyPI, Go, and Rust ecosystems.</description><pubDate>Wed, 08 Apr 2026 08:32:04 GMT</pubDate><category>Contagious Interview</category><category>Lazarus Group</category><category>Supply Chain Attack</category><category>NPM</category><category>PyPI</category><category>Malware</category></item><item><title>TeamPCP Supply Chain Campaign: Weaponized Scanners and PyPI Compromise</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-campaign-weaponized-scanners-and-pypi-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-campaign-weaponized-scanners-and-pypi-compromise</guid><description>Analysis of the TeamPCP campaign transition to monetization following the Telnyx PyPI compromise and Vect ransomware partnership affecting security tools.</description><pubDate>Sat, 28 Mar 2026 16:14:20 GMT</pubDate><category>TeamPCP</category><category>PyPI</category><category>Vect Ransomware</category><category>Telnyx</category><category>Supply Chain Attack</category></item><item><title>Backdoored Telnyx PyPI Package Uses Steganography to Deliver Malware</title><link>https://runtimerebel.com/blog/backdoored-telnyx-pypi-package-uses-steganography-to-deliver-malware</link><guid isPermaLink="true">https://runtimerebel.com/blog/backdoored-telnyx-pypi-package-uses-steganography-to-deliver-malware</guid><description>Security researchers discovered malicious versions of the Telnyx PyPI package delivering infostealers via steganography hidden in WAV audio files.</description><pubDate>Sat, 28 Mar 2026 00:36:31 GMT</pubDate><category>PyPI</category><category>Telnyx</category><category>Steganography</category><category>Infostealer</category><category>TeamPCP</category><category>Python Security</category></item><item><title>Telnyx PyPI Package Compromised by TeamPCP via Steganography</title><link>https://runtimerebel.com/blog/telnyx-pypi-package-compromised-by-teampcp-via-steganography</link><guid isPermaLink="true">https://runtimerebel.com/blog/telnyx-pypi-package-compromised-by-teampcp-via-steganography</guid><description>TeamPCP threat actors distributed malicious Telnyx Python package versions 4.87.1 and 4.87.2 on PyPI to harvest credentials using hidden WAV files.</description><pubDate>Fri, 27 Mar 2026 20:15:00 GMT</pubDate><category>Telnyx</category><category>PyPI</category><category>TeamPCP</category><category>Python</category><category>Steganography</category><category>Credential Theft</category></item><item><title>TeamPCP Supply Chain Attack: Telnyx PyPI Compromise and Vect Ransomware</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-attack-telnyx-pypi-compromise-and-vect-ransomware</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-attack-telnyx-pypi-compromise-and-vect-ransomware</guid><description>TeamPCP campaign escalates with Telnyx PyPI compromise and Vect Ransomware mass affiliate program. Critical update for software developers and SOC teams.</description><pubDate>Fri, 27 Mar 2026 16:27:06 GMT</pubDate><category>TeamPCP</category><category>Telnyx</category><category>PyPI</category><category>Vect Ransomware</category><category>Supply Chain Security</category></item><item><title>TeamPCP Supply Chain: Checkmarx Wider Scope &amp; LiteLLM PyPI Compromise</title><link>https://runtimerebel.com/blog/teampcp-supply-chain-checkmarx-wider-scope-litellm-pypi-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/teampcp-supply-chain-checkmarx-wider-scope-litellm-pypi-compromise</guid><description>An update on the TeamPCP supply chain campaign details wider Checkmarx impact, LiteLLM PyPI compromise, and a CISA KEV entry.</description><pubDate>Thu, 26 Mar 2026 20:16:14 GMT</pubDate><category>TeamPCP</category><category>Supply Chain Attack</category><category>Checkmarx</category><category>LiteLLM</category><category>PyPI</category><category>CISA KEV</category></item><item><title>LiteLLM PyPI Supply Chain Attack: TeamPCP Steals Credentials</title><link>https://runtimerebel.com/blog/litellm-pypi-supply-chain-attack-teampcp-steals-credentials</link><guid isPermaLink="true">https://runtimerebel.com/blog/litellm-pypi-supply-chain-attack-teampcp-steals-credentials</guid><description>TeamPCP compromised the LiteLLM PyPI package, backdooring it to steal credentials and auth tokens from hundreds of thousands of devices.</description><pubDate>Wed, 25 Mar 2026 00:36:46 GMT</pubDate><category>LiteLLM</category><category>PyPI</category><category>TeamPCP</category><category>Supply Chain Attack</category><category>Credential Theft</category><category>Python Package</category></item><item><title>GlassWorm: Stolen GitHub Tokens Fuel Python Malware Injection</title><link>https://runtimerebel.com/blog/glassworm-stolen-github-tokens-fuel-python-malware-injection</link><guid isPermaLink="true">https://runtimerebel.com/blog/glassworm-stolen-github-tokens-fuel-python-malware-injection</guid><description>The GlassWorm campaign uses stolen GitHub tokens to inject malicious code into Python repositories, including Django and machine learning projects.</description><pubDate>Mon, 16 Mar 2026 20:15:27 GMT</pubDate><category>GlassWorm</category><category>GitHub Security</category><category>Python Malware</category><category>Supply Chain Security</category><category>Django</category><category>PyPI</category></item></channel></rss>