importantSYS.SOURCE: The Hacker News• 2026-08-07T12:20:05+05:30
TeamPCP's Long-Term Redis Attacks and Supply Chain Campaigns Traced Back to 2020
TeamPCP has been linked to Redis attacks since 2020, evolving into supply chain campaigns by exploiting vulnerabilities in technologies like React, Docker, and Kubernetes. The group's operations include malware deployment, cryptocurrency mining, and destructive wiper attacks targeting specific geographic regions.
A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their sights on the software supply chain.
"The connection is supported by overlapping domains, malware deployment paths, staging techniques, backend infrastructure,
*** END OF TRANSMISSION ***