← All stories
● Covered by 1 source · 1 reportMedium impact1 neutral

Google Infiltrated TeamPCP Hacking Group During Supply Chain Attacks

🔄 Updated 3d ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • TeamPCP tainted hundreds of open-source programs with malware.
  • Google's Mandiant had an undercover analyst within TeamPCP.
  • Infiltration helped Google warn targets and aid law enforcement.
  • Two alleged TeamPCP members were arrested in Australia.

TeamPCP's Hacking Spree

The hacker group TeamPCP conducted a hacking spree, tainting hundreds of open-source programs with malware and stealing developer accounts. The group also released a Dune-themed self-spreading worm, ultimately breaching over a thousand companies. Two alleged members of TeamPCP were arrested and charged in Australia last month.

Google's Undercover Operation

Google's threat intelligence group revealed that an undercover researcher infiltrated TeamPCP during its operations. This infiltration allowed Google to monitor the group's activities from the inside, warn potential breach targets, and disrupt exploitation attempts. The details of this operation were presented by Google Threat Intelligence Group researcher Austin Larsen at SentinelOne’s LABScon research conference.

Infiltration Details and Collaboration

According to Larsen, a Mandiant analyst, a Google security subsidiary, had been working for months to build trust and was added to TeamPCP's inner circle almost from the beginning. Google also followed operational security mistakes made by one of the alleged Australian members, passing identifying details to law enforcement. Additionally, Google received intelligence from ShinyHunters, another cybercriminal group that initially partnered with TeamPCP but later turned against them.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~26 min · 21 stories · Sep 23

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Google's threat intelligence group revealed an undercover researcher infiltrated the TeamPCP hacking group, which tainted hundreds of open-source programs and breached over a thousand companies. This infiltration allowed Google to monitor the group's activities, warn targets, and assist law enforcement.