AUTHORITIES in Australia arrested two men linked to the hacking group TeamPCP, accused of conducting significant cybercrimes through supply chain attacks that infected over 1,000 organizations globally. The arrests, announced by the Australian Federal Police, come after the group’s notorious use of a self-propagating malware dubbed 'Shai-Hulud' that targeted software development pipelines. This malware compromised software packages, allowing it to spread and collect credentials from infected systems.
Following a detailed investigation, the individuals were charged with 14 offenses, with potential prison sentences exceeding 20 years. The methods used by TeamPCP highlight vulnerabilities in software supply chains and the evolving nature of cyber threats.