Malicious LiteLLM Packages Steal AWS & Crypto Keys

LiteLLM PyPI Malware Steals Cloud, Crypto, Slack, and Discord Keys

March 24, 2026

Breaking News: LiteLLM Python malicious versions 1.82.7 and 1.82.8 were uploaded to PyPi, containing a credential stealing logic. If you were affected, rotate your keys now

Overview

LiteLLM was recently compromised after a maintainer’s account was hacked. This was allegedly done by a threat actor known as TeamPCP, who claimed responsibility. The threat actors used this account to upload two malicious LiteLLM versions on PyPi containing an infostealer, which targets AWS, GCP, GitHub, SSH keys, crypto currency wallets such as Bitcoin, Litecoin, Ethereum, Solana and much more.

What Is LiteLLM

LiteLLM is an open-source Python library that provides a unified interface to call 100+ LLMs (OpenAI, Anthropic, VertexAI, etc.) using the standard OpenAI input/output format.

Who is affected

Anyone who installed LiteLLM in versions 1.82.7 and 1.82.8 was affected.

How to tell if you are affected:

Impact

Recommended Actions

Immediate Actions:

  1. Rotate your session tokens and API keys
  2. Pin your dependencies to specific versions to avoid installing unknown versions automatically

Technical Analysis

The affected versions contain a malicious pth file, which is a Python configuration file, inside it there’s a base64 encoded payload with another base64 payload inside which is executed, and also a third base64 payload – intended to steal information and persist on affected machines.

List of targeted SSH keys files:

Searching for k8s, GCP, Azure credentials:

List of IOCs

Affected Packages – PyPi

Package name Affected versions
litellm 1.82.7, 1.82.8

Conclusions

This is another example of a large-scale incident triggered by a single compromised maintainer account, similar to what we documented in the npm supply chain attack and the Shai Hulud incident last year.

How to protect your organization:

Tags:

“OX Security’s platform gave us a clear, prioritized view of our applications without manual work, saving significant time“