Australian Authorities Arrest Two Alleged Members of Hacking Group TeamPCP Behind Global Supply-Chain Attacks

Published:

Cyber Warriors Conclave — nine editions, one cyber safe nation

Authorities in Australia announced the arrest of two men linked to TeamPCP, a notorious hacking group responsible for a series of global supply-chain attacks that have impacted over 1,000 organizations in the past nine months. The Australian Federal Police stated that the suspects were charged with 14 offenses related to their cybercriminal activities. While the identities of the men have not been disclosed, they are reported to reside in the Western Australian towns of Cottesloe and Mandurah. According to reporting by Ars Technica, a detailed investigation has revealed their backgrounds and the errors that led to their apprehension.

TeamPCP’s Ongoing Threat

Since its emergence in December, TeamPCP has posed significant challenges to law enforcement and cybersecurity professionals worldwide. The group is particularly infamous for its supply-chain attacks, which have involved embedding malware into open-source software. This malware, known as Shai-Hulud, exploits continuous integration and continuous deployment (CI/CD) pipelines, allowing it to spread from one software package to another.

Once a package is compromised, Shai-Hulud attaches itself to subsequent updates, leading to further infections when developers download and utilize these tainted packages in their own CI/CD environments. This method of attack has made TeamPCP a persistent threat in the cybersecurity landscape.

Follow Cyber Warriors Middle East for further global cybersecurity developments.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

UAE Phishing Protection Market Expected to Grow Significantly by 2028

The phishing protection market in the UAE is poised for significant growth, with projections indicating a robust expansion by 2028. This development is underscored...

Malicious object blocks on ICS computers drop to 19.15% in Q2 2026, lowest since 2022.

Declining Threats in Industrial Control Systems: A Q2 2026 Overview In a notable shift within the cybersecurity landscape, the percentage of Industrial Control Systems (ICS)...

PaperCut Alerts Users to Active Exploitation of Critical Vulnerabilities in Print Management Software

The company behind a popular brand of printer management software, PaperCut, has issued an emergency advisory regarding critical vulnerabilities in its software, PaperCut NG...

Eighteen Chrome and Edge Extensions Discovered with Wallet-Stealing and Crypto-Draining Capabilities

Cybersecurity researchers have identified a group of 18 Google Chrome extensions and one Microsoft Edge extension that possess wallet secret stealing and cryptocurrency draining...