// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-newsDTG 0600Z
Breach Record

LiteLLM

DISCLOSED 2026-08-19 · SUPPLY CHAIN · RANSOMWARE

A supply chain attack on LiteLLM compromised credentials affecting 2,488 firms. Threat actor TeamPCP exploited the stolen credentials, and a second group named PCPJack later used them to steal additional cloud secrets. The Anubis ransomware, linked to the attack, claimed 91 victims across multiple sectors by July 2026.

The record

What we know

Disclosed
2026-08-19
Attack vector
Supply Chain
Sector
technology
Data classes exposed
credentialscloud secrets
RANSOMWARE
Sources

Cited reporting

Similar vector · recent

Other supply chain breaches on file

This page is the permanent ColdRecon entry for the LiteLLM disclosure. It updates if new public reporting emerges. All tracked breaches →

LiteLLM just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →