TeamPCP Compromises Over 1,000 Software Packages Since 2020
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
The TeamPCP group has been operational since at least 2020, compromising over 1,000 software packages in a span of four months during 2025. Oligo Security has linked TeamPCP's recent activities to earlier documented attacks, utilizing the same command and control infrastructure, domains, and file servers. This sustained operation went unnoticed for years, indicating a high level of sophistication and persistence. The scope of the impact includes a wide array of software packages, potentially affecting numerous organizations that rely on these tools. The group’s ability to remain undetected for such an extended period raises significant concerns about supply chain security. Current investigations are ongoing to assess the full extent of the compromise and to identify affected systems. The situation emphasizes the need for enhanced monitoring and security measures in software supply chains.
Key Points: • TeamPCP has been active since 2020, compromising over 1,000 software packages in 2025. • The group uses persistent command and control infrastructure linked to earlier attacks. • Ongoing investigations aim to assess the full impact on affected organizations.