Skip to main content
News Directory 3
  • Home
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
Menu
  • Home
  • Business
  • Entertainment
  • Health
  • News
  • Sports
  • Tech
  • World
NPM Supply-Chain Attack Spreads via Compromised Packages, Linked to TeamPCP’s LiteLLM Method - News Directory 3

NPM Supply-Chain Attack Spreads via Compromised Packages, Linked to TeamPCP’s LiteLLM Method

April 23, 2026 Lisa Park Tech
News Context
At a glance
  • A new supply chain worm targeting the npm ecosystem has been discovered, sharing significant overlap with recent attacks attributed to the threat group TeamPCP, according to security researchers.
  • The worm, which payloads reference the 'TeamPCP/LiteLLM method', is actively compromising packages in the npm registry by stealing sensitive credentials and propagating through developer environments, mirroring tactics seen...
  • Analysis indicates the malware follows a pattern consistent with the widespread Shai-Hulud worm identified in September 2025, which compromised over 500 npm packages by harvesting GitHub Personal Access...
Original source: go.theregister.com

A new supply chain worm targeting the npm ecosystem has been discovered, sharing significant overlap with recent attacks attributed to the threat group TeamPCP, according to security researchers.

The worm, which payloads reference the ‘TeamPCP/LiteLLM method’, is actively compromising packages in the npm registry by stealing sensitive credentials and propagating through developer environments, mirroring tactics seen in prior supply chain compromises.

Analysis indicates the malware follows a pattern consistent with the widespread Shai-Hulud worm identified in September 2025, which compromised over 500 npm packages by harvesting GitHub Personal Access Tokens and cloud service API keys for AWS, GCP, and Azure before exfiltrating them to actor-controlled endpoints.

Share this:

  • Share on Facebook (Opens in new window) Facebook
  • Share on X (Opens in new window) X

Related

Search:

News Directory 3

ByoDirectory is a comprehensive directory of businesses and services across the United States. Find what you need, when you need it.

Quick Links

  • Disclaimer
  • Terms and Conditions
  • About Us
  • Advertising Policy
  • Contact Us
  • Cookie Policy
  • Editorial Guidelines
  • Privacy Policy

Browse by State

  • Alabama
  • Alaska
  • Arizona
  • Arkansas
  • California
  • Colorado

Connect With Us

© 2026 News Directory 3. All rights reserved.

Privacy Policy Terms of Service