The 48-Hour Secrets Sprint: How Three Registries Were Swept in One Weekend

A coordinated 48-hour sprint hit npm, PyPI, and Docker Hub, targeting developer secrets at scale. From infected AI libraries to a trojanized security scanner, the supply chain is moving faster than your detection.

Read More

TeamPCP's Criminal Empire Is Growing and Nobody Agrees Who's Running It

TeamPCP has evolved from cloud extortion to a criminal franchise operation with a wiper targeting Iran, a ransomware partnership with 300K affiliates, and public feuds with other threat actors.

Read More

TeamPCP Is Not a Hacker Group Anymore. It's a Cloud Crime Platform.

TeamPCP has graduated from opportunistic attacker to full-spectrum criminal platform -- with blockchain C2 that law enforcement can't seize and a live ransomware affiliate program that costs $250 to join.

Read More

CanisterWorm: How TeamPCP Hijacked Your Security Scanners and Built an Untakeable Botnet

TeamPCP compromised Trivy and KICS CI/CD scanner tags, spread CanisterWorm to 47 npm packages, and deployed a Kubernetes wiper targeting Iranian timezones -- all controlled via blockchain C2 that can't be taken down.

Read More