// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-newsDTG 0600Z
Breach Record

LiteLLM

DISCLOSED 2026-08-16 · SUPPLY CHAIN

A supply-chain attack on LiteLLM by TeamPCP may have exposed over 2,500 organizations to stolen cloud credentials, AI API keys, and CI/CD secrets. The breach affected 434K CI/CD pipelines. The attack vector is supply-chain compromise.

The record

What we know

Disclosed
2026-08-16
Attack vector
Supply Chain
Sector
AI/ML platform
Data classes exposed
cloud credentialsAI API keysCI/CD secrets
Sources

Cited reporting

Similar vector · recent

Other supply chain breaches on file

This page is the permanent ColdRecon entry for the LiteLLM disclosure. It updates if new public reporting emerges. All tracked breaches →

LiteLLM just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →