Google analyst infiltrated notorious supply-chain hacking group TeamPCP

Google’s Threat Intelligence Group has revealed that an undercover researcher successfully infiltrated the notorious hacker collective TeamPCP during its massive supply-chain attack campaign. The group, which targeted hundreds of open-source programs and breached over a thousand companies, was monitored from the inside by a Mandiant analyst. This operation allowed Google to warn victims and disrupt exploitation attempts in real-time. According to researcher Austin Larsen, the investigation was aided by operational security lapses by the group's members and intelligence provided by a rival hacking collective, ShinyHunters. The findings, presented at SentinelOne's LABScon conference, detail how Google tracked the group's activities, leading to the identification of two Australian suspects who were recently arrested. This infiltration highlights the sophisticated methods tech giants are employing to combat large-scale cyber threats and protect the software supply chain from malicious actors.
This is a summary. Read the full article at the original source:
Ars TechnicaRelated stories
Researchers demonstrate InjectEave: A technique to intercept audio through walls
Researchers from HKUST (Guangzhou) and HK PolyU have unveiled 'InjectEave,' a sophisticated eavesdropping technique capable of extracting audio from h…
The article discusses an innovative approach to digital content authentication, proposing the use of 'spymarks' as a superior alternative to tradition…
Cybersecurity researchers at Zimperium have identified a sophisticated new Android malware strain dubbed RatHat. Unlike traditional malware that relie…


