Cyber Resilience
← All news
Corroborated

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

Our takeAFP arrested two Western Australians, 21 and 23, over alleged TeamPCP membership — the group blamed for planting malicious code in open-source software to breach orgs worldwide. Arrests are fact; guilt is an allegation. The poisoned packages don't leave the ecosystem with them.
Sources (2)
What this means for you — Security leader:TeamPCP used supply-chain attacks on open-source packages to gain initial access across many organizations. Review your software inventory and third-party risk processes for any reliance on smaller or lightly-maintained open-source components.
What this means for you — Lean IT orgs:If you use any open-source software or libraries from smaller projects, check that they come from trusted maintainers and are kept up to date. Consider switching to well-known alternatives where practical.
What this means for you — MSP:Advise clients to treat open-source dependencies as part of third-party risk; maintain an inventory of packages in use and monitor for new maintainer changes or unexpected updates.
What this means for you — Researcher:TeamPCP conducted one of the longest-running software supply-chain campaigns by compromising open-source packages. Monitor emerging threat-intel on this group and any new IOCs released by AFP/FBI.