Skip to main content
← All Articles

Tag

#TeamPCP

31 articles

Advertisement

Shai-Hulud Campaign: TeamPCP Targets Open-Source Supply Chain
HIGH
Supply Chain

Shai-Hulud Campaign: TeamPCP Targets Open-Source Supply Chain

Analysis of the Shai-Hulud campaign by TeamPCP, detailing their open-source supply chain attacks, TTPs, and critical mitigation strategies.

Runtime Rebel Intel
5 min read·May 26, 2026
SU
CRITICAL
Supply Chain

TeamPCP Supply Chain Attack Targets Microsoft SDKs and GitHub

TeamPCP expands its supply chain campaign to trojanize official Microsoft Python SDKs and infiltrate GitHub, requiring immediate dependency audits.

Runtime Rebel Intel
3 min read·May 25, 2026
GitHub Data Breach: Analysis of TeamPCP Internal Repository Theft
HIGH
Data Breach

GitHub Data Breach: Analysis of TeamPCP Internal Repository Theft

GitHub confirms the theft of 4,000 internal repositories by threat actor TeamPCP. Learn the technical implications and defense strategies for security teams.

Runtime Rebel Intel
3 min read·May 21, 2026
GitHub Investigates Claimed TeamPCP Breach of 4,000 Internal Repos
HIGH
Data Breach

GitHub Investigates Claimed TeamPCP Breach of 4,000 Internal Repos

GitHub is investigating a potential breach of 4,000 internal repositories claimed by TeamPCP, highlighting the risk of source code leaks for enterprises.

Runtime Rebel Intel
4 min read·May 20, 2026
SU
HIGH
Supply Chain

TeamPCP Jenkins Plugin Compromise and Mini Shai-Hulud Worm Analysis

TeamPCP escalates its supply chain campaign with a confirmed Jenkins plugin compromise and a self-spreading worm targeting the npm and PyPI ecosystems.

Runtime Rebel Intel
3 min read·May 18, 2026
DA
HIGH
Data Breach

TeamPCP Threatens Sale of Mistral AI Source Code Repositories

TeamPCP hackers claim to have exfiltrated 22GB of source code from Mistral AI. This report analyzes the breach impact and API key security risks.

Runtime Rebel Intel
3 min read·May 15, 2026
Mini Shai-Hulud Worm Compromises TanStack and Mistral AI Packages
CRITICAL
Supply Chain

Mini Shai-Hulud Worm Compromises TanStack and Mistral AI Packages

TeamPCP actor compromises major npm and PyPI packages including TanStack and Mistral AI via the Mini Shai-Hulud worm, deploying profiling malware.

Runtime Rebel Intel
4 min read·May 12, 2026
Checkmarx Jenkins AST Plugin Compromised in TeamPCP Attack
CRITICAL
Supply Chain

Checkmarx Jenkins AST Plugin Compromised in TeamPCP Attack

TeamPCP compromised the Checkmarx Jenkins AST plugin on the Jenkins Marketplace. Defenders must revert to version 2.0.13 to secure CI/CD pipelines.

Runtime Rebel Intel
3 min read·May 11, 2026
TH
HIGH
Threat Intel

AI-Augmented Zero-Day Exploitation and Autonomous Malware Orchestration

GTIG report reveals how threat actors leverage generative AI for zero-day discovery, autonomous Android malware orchestration, and AI supply chain attacks.

Runtime Rebel Intel
4 min read·May 11, 2026
PCPJack Malware: Stealing Cloud Secrets via Parquet File Discovery
HIGH
Cloud Security

PCPJack Malware: Stealing Cloud Secrets via Parquet File Discovery

PCPJack malware replaces TeamPCP, utilizing Apache Parquet files for stealthy cloud secret theft across multiple service providers and environments.

Runtime Rebel Intel
3 min read·May 8, 2026
MA
HIGH
Malware

PCPJack Worm: Analyzing the Malware Displacement in Cloud Environments

PCPJack is a new Golang-based worm targeting AWS, Docker, and Kubernetes. Learn how it removes TeamPCP and steals credentials to compromise cloud infrastructure.

Runtime Rebel Intel
3 min read·May 8, 2026
MA
HIGH
Malware

PCPJack Worm Steals Cloud Credentials, Cleans TeamPCP Access

New PCPJack worm actively targets exposed cloud infrastructure, stealing credentials and removing existing TeamPCP infections. Understand its TTPs and mitigation.

Runtime Rebel Intel
4 min read·May 7, 2026