Python Package Index is a technology platform tracked across 2 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed March 24, 2026; most recent activity July 2, 2026.
A coordinated supply chain attack has been identified, targeting vulnerability researchers and penetration testers through malicious proof-of-concept (PoC) repositories on GitHub. The malware, named ChocoPoC, is a…
On March 24, 2026, two malicious versions of the LiteLLM Python package (1.82.7 and 1.82.8) were published on PyPI, containing credential-stealing malware. The attack, attributed to the TeamPCP threat group, exploited…