Media Summary: I've made two videos about supply chain attacks on open source software. One about Trivy, Axios, and the Linux Foundation. In March 2026, a sophisticated threat group known as In this episode of Bad Dependencies, we analyze the reported leak of GitHub's source code and the sale of thousands of its ...

Teampcp - Detailed Analysis & Overview

I've made two videos about supply chain attacks on open source software. One about Trivy, Axios, and the Linux Foundation. In March 2026, a sophisticated threat group known as In this episode of Bad Dependencies, we analyze the reported leak of GitHub's source code and the sale of thousands of its ... Three Linux kernel privilege escalation bugs in two weeks. Copy Fail. Dirty Frag. Now Fragnesia. Fragnesia is related to one of ... In this episode of Bad Dependencies, we dive into the "wormy" chaos of the latest supply chain attack hitting the JavaScript ... Read the Threat Intelligence Report, ...

Is your AI infrastructure truly secure, or are you part of a massive AI Supply Chain Horror? In this video, we break down the ... You're safe now, king .*** 🛡️ Blogs and resources: ... In May 2026, a massive supply-chain attack shook the global tech and AI sectors. A cybercriminal syndicate known as A security scanner trusted by thousands of companies was hijacked. Within 60 seconds, 46 packages were compromised. Is your cloud infrastructure secretly working for a criminal empire?** ☁️ Dive into the terrifying reality of ** Yesterday, on March 24, 2026, a LiteLLM hack by

A major cyberattack has shaken the AI development world. The threat group In this episode of Bad Dependencies, Mackenzie and security researcher Charlie Erickson break down a fast-moving software ... Chat messages on screen are pulled from DUE TO DMCA ISSUES - background music on YouTube ... The attacker is still inside Aqua Security's infrastructure. Three breaches in 30 days. This is not a post-mortem — this is an active ...

Photo Gallery

It's Bigger Than TeamPCP. Open Source Is Under Siege.
TeamPCP: The Supply Chain Attack That Shook Open Source  #TeamPCP #Trivy #KICS #LiteLLM
GitHub Breach: Inside the Team PCP Supply Chain Breach
TeamPCP: Frag You
Shai-Hulud is Back:  TanStack & Mistral AI Breach by TeamPCP Mini Worm
When the Security Scanner Became the Weapon: Inside the TeamPCP Supply Chain Attack
TeamPCP supply chain attack compromising LiteLLM, Trivy, and five package ecosystems targeting AI AP
AI Supply Chain Horror: The LiteLLM & TeamPCP Attack Explained (2026)
Hacked by TeamPCP: Supply chain attack via lobster-based worm targets security tool and NPM
🚨 TeamPCP Supply Chain Campaign!
The Hackers Targeting the AI Industry: Inside the TeamPCP Supply-Chain Crisis
TeamPCP Are Back: The Shai-Hulud of Supply Chain Attacks
Sponsored
Sponsored
View Detailed Profile
It's Bigger Than TeamPCP. Open Source Is Under Siege.

It's Bigger Than TeamPCP. Open Source Is Under Siege.

I've made two videos about supply chain attacks on open source software. One about Trivy, Axios, and the Linux Foundation.

TeamPCP: The Supply Chain Attack That Shook Open Source  #TeamPCP #Trivy #KICS #LiteLLM

TeamPCP: The Supply Chain Attack That Shook Open Source #TeamPCP #Trivy #KICS #LiteLLM

In March 2026, a sophisticated threat group known as

Sponsored
GitHub Breach: Inside the Team PCP Supply Chain Breach

GitHub Breach: Inside the Team PCP Supply Chain Breach

In this episode of Bad Dependencies, we analyze the reported leak of GitHub's source code and the sale of thousands of its ...

TeamPCP: Frag You

TeamPCP: Frag You

Three Linux kernel privilege escalation bugs in two weeks. Copy Fail. Dirty Frag. Now Fragnesia. Fragnesia is related to one of ...

Shai-Hulud is Back:  TanStack & Mistral AI Breach by TeamPCP Mini Worm

Shai-Hulud is Back: TanStack & Mistral AI Breach by TeamPCP Mini Worm

In this episode of Bad Dependencies, we dive into the "wormy" chaos of the latest supply chain attack hitting the JavaScript ...

Sponsored
When the Security Scanner Became the Weapon: Inside the TeamPCP Supply Chain Attack

When the Security Scanner Became the Weapon: Inside the TeamPCP Supply Chain Attack

Read the Threat Intelligence Report, ...

TeamPCP supply chain attack compromising LiteLLM, Trivy, and five package ecosystems targeting AI AP

TeamPCP supply chain attack compromising LiteLLM, Trivy, and five package ecosystems targeting AI AP

Deep dive:

AI Supply Chain Horror: The LiteLLM & TeamPCP Attack Explained (2026)

AI Supply Chain Horror: The LiteLLM & TeamPCP Attack Explained (2026)

Is your AI infrastructure truly secure, or are you part of a massive AI Supply Chain Horror? In this video, we break down the ...

Hacked by TeamPCP: Supply chain attack via lobster-based worm targets security tool and NPM

Hacked by TeamPCP: Supply chain attack via lobster-based worm targets security tool and NPM

You're safe now, king .*** 🛡️ Blogs and resources: ...

🚨 TeamPCP Supply Chain Campaign!

🚨 TeamPCP Supply Chain Campaign!

TeamPCP

The Hackers Targeting the AI Industry: Inside the TeamPCP Supply-Chain Crisis

The Hackers Targeting the AI Industry: Inside the TeamPCP Supply-Chain Crisis

In May 2026, a massive supply-chain attack shook the global tech and AI sectors. A cybercriminal syndicate known as

TeamPCP Are Back: The Shai-Hulud of Supply Chain Attacks

TeamPCP Are Back: The Shai-Hulud of Supply Chain Attacks

A security scanner trusted by thousands of companies was hijacked. Within 60 seconds, 46 packages were compromised.

TeamPCP  The Criminal Cloud

TeamPCP The Criminal Cloud

Is your cloud infrastructure secretly working for a criminal empire?** ☁️ Dive into the terrifying reality of **

TeamPCP Hacked More Than Just LiteLLM and Trivy | Day 31 of 100 on OpenClaw

TeamPCP Hacked More Than Just LiteLLM and Trivy | Day 31 of 100 on OpenClaw

Yesterday, on March 24, 2026, a LiteLLM hack by

TeamPCP Hack Explained: AI Supply Chain Attack Hits 95 Million Developers #CyberSecurity #AI

TeamPCP Hack Explained: AI Supply Chain Attack Hits 95 Million Developers #CyberSecurity #AI

A major cyberattack has shaken the AI development world. The threat group

E11: From Trivy to LiteLLM: The Domino Effect of TeamPCP’s Attack - Bad Dependencies Podcast

E11: From Trivy to LiteLLM: The Domino Effect of TeamPCP’s Attack - Bad Dependencies Podcast

In this episode of Bad Dependencies, Mackenzie and security researcher Charlie Erickson break down a fast-moving software ...

Team PCP - Telnyx Compromise explained - One stolen GitHub token. Seven days. Nine compromises.

Team PCP - Telnyx Compromise explained - One stolen GitHub token. Seven days. Nine compromises.

Check the full writeup: https://phoenix.security/

TEAMPCP - SUPPLY CHAIN ATTACKS - ITS ALL A MESS!

TEAMPCP - SUPPLY CHAIN ATTACKS - ITS ALL A MESS!

Chat messages on screen are pulled from https://twitch.tv/endingwithali. DUE TO DMCA ISSUES - background music on YouTube ...

Trivy Hacked 3 Times. The Full Campaign Explained TeamPHP supply chain compromise

Trivy Hacked 3 Times. The Full Campaign Explained TeamPHP supply chain compromise

The attacker is still inside Aqua Security's infrastructure. Three breaches in 30 days. This is not a post-mortem — this is an active ...

Related Video Content

Weaponizing the Protectors: TeamPCP’s Multi-Stage Supply Chain … information

Mar 31, 2026 · TeamPCP continues its string of supply chain attacks, and announces a partnership with Vect ransomware...

TeamPCP — Breach Tracker | International Cyber Digest information

Mar 1, 2026 · Team PCP A running tracker for the coordinated supply chain attack campaign attributed to TeamPCP —...

GitHub Breached — Employee Device Hack Led to Exfiltration of 3,800 ... information

May 20, 2026 · GitHub is investigating unauthorized access to internal repositories after TeamPCP listed alleged...

Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in … information

Mar 30, 2026 · Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild How TeamPCP are leveraging...

A Hacker Group Is Poisoning Open Source Code at an ... - WIRED information

May 21, 2026 · GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply...