Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
Australian authorities have charged two men linked to the cybercrime group TeamPCP, allegedly responsible for a widespread supply chain attack targeting over 1,000 organizations globally. The group exploited compromised open-source projects to steal publishing credentials and inject malicious code into widely used tools like LiteLLM, leading to the theft of over 500,000 credentials and 300GB of data. The investigation, ongoing since March 2026, has identified a complex operation with roots dating back to 2020, and involved actors previously linked to TA-NATALSTATUS and IronErn. The FBI advises organizations to actively search for TeamPCP-related repositories and pin GitHub Actions workflows.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
