TeamPCP is offering alleged Mistral AI repositories for sale on a hacker forum. This follows the Mini Shai-Hulud attack targeting the npm and PyPI ecosystems. The claim remains unverified by the company. Developers should audit their dependency chains immediately to prevent supply chain compromises from leaking proprietary model weights or internal code.