Sponsor of the Day:
Jerkmate
https://www.helpnetsecurity.com/2026/03/25/teampcp-supply-chain-attacks/
LiteLLM PyPI packages compromised in expanding TeamPCP supply chain attacks - Help Net Security
Mar 27, 2026 - A slew of supply chain attacks against popular open source tools and packages appears to have been orchestrated by TeamPCP cybercriminals.
teampcp supply chainlitellm pypipackages compromisedattacks helpexpanding
https://www.kaspersky.co.in/blog/npm-packages-trojanized/29528/
Popular npm packages compromised | Kaspersky official blog
Sep 10, 2025 - Unknown attackers have compromised color, debug, ansi-regex, chalk, and several other npm packages in a supply-chain attack.
kaspersky official blogpopular npmpackages compromised
https://www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised
npm debug and chalk packages compromised
Mar 17, 2026 - The popular packages debug and chalk on npm have been compromised with malicious code
packages compromisednpmdebugchalk
https://www.openwall.com/lists/oss-security/2026/03/24/6
oss-security - litellm pypi packages compromised, infostealer added
oss securitylitellm pypipackages compromisedinfostealeradded
https://joripress.com/Compromised-Namastex-npm-Packages-Deliver-TeamPCP-Style-CanisterWorm-Malware
Compromised Namastex npm Packages Deliver TeamPCP-Style CanisterWorm Malware - JoriPress
Apr 23, 2026 - cybersecurity, npm, supply‑chain, malware, business risk, DefendMyBusiness
npm packagescompromiseddeliverteampcpstyle
https://app.stepsecurity.io/github/actions-security-demo/compromised-packages/actions/runs/24107839213
Run #24107839213 · actions-security-demo/compromised-packages | StepSecurity
View detailed insights and events for workflow run #24107839213 in actions-security-demo/compromised-packages
actions securityrundemocompromisedpackages
https://app.stepsecurity.io/github/actions-security-demo/compromised-packages/actions/runs/23326425755?tab=network-events
Run #23326425755 · actions-security-demo/compromised-packages | StepSecurity
View detailed insights and events for workflow run #23326425755 in actions-security-demo/compromised-packages
actions securityrundemocompromisedpackages