Overview

TeamPCP is the likely cyber threat actor behind attacks on Trivy, Checkmarx's KICS and VS Code plug-ins, and the LiteLLM AI library — and all signs point to more attacks to come.

Organisations Involved

The following organisations are mentioned in relation to this incident: Code Scanner Targeted, Widening Supply Chain Hit.

Multi-Source Coverage

This event has been reported across multiple outlets:


Sources: darkreading. Aggregated by Cybernews Agency pipeline.