Detect IOCs from PyPI & npm supply chain attacks. TOML threat profiles, user-extensible, blast radius mapping. Built-in: LiteLLM (TeamPCP) + Axios.
-
Updated
May 15, 2026 - Python
Detect IOCs from PyPI & npm supply chain attacks. TOML threat profiles, user-extensible, blast radius mapping. Built-in: LiteLLM (TeamPCP) + Axios.
Live database of TeamPCP supply chain attack compromises — LiteLLM, Telnyx, Trivy, and more. Includes CLI scanner and REST API.
Forensic dataset + live dashboard for the 2026-04-29 'A Mini Shai-Hulud has Appeared' npm supply-chain worm by TeamPCP. 1,117 dropbox repos, 22 compromised accounts, 47 IOCs across 14 kinds. Trojaned: @cap-js, mbt, @bitwarden/cli. C2 attribution to AS209101 IP Vendetta Inc. JSONL data · kinetic dashboard · CC-BY-4.0.
Simple, dependency-free Python auditor for the 2026 GitHub TeamPCP VS Code extension breach (Nx Console v18.95.0). Detect malicious extensions in seconds. Assume Breach.
Formally verified, quantitative reconstruction of the Trivy/TeamPCP GitHub Actions supply-chain attack (CVE-2026-33634): a TLA+/TLC incident model, PRISM probabilistic analysis, and a 189-workflow corpus study.
yara rules
Remediation runbook for the TeamPCP/Trivy supply chain attack (March 2026)
To associate your repository with the teampcp topic, visit your repo's landing page and select "manage topics."