- 1,000+ organizations compromised by TeamPCP's attacks
- 500,000+ credentials stolen and 300+ GB of data exfiltrated
- Hundreds of millions in damages estimated globally
Experts agree this case highlights the growing necessity of public-private partnerships in combating sophisticated cybercrime syndicates that operate with business-like efficiency.
Digital Dragnet: How Private Intel and Global Cops Dismantled a Cyber Syndicate
PERTH, AUSTRALIA – August 27, 2026 – In a series of raids across Western Australia this week, a coordinated international law enforcement effort culminated in the arrests of two young men, alleged to be key members of the prolific cybercrime group known as TeamPCP. The operation, a joint venture between the Australian Federal Police (AFP), the Western Australia Police Force (WAPF), and the U.S. Federal Bureau of Investigation (FBI), represents a significant blow to a syndicate accused of compromising over 1,000 organizations globally and causing hundreds of millions of dollars in damages. Yet, the real story lies not just in the arrests, but in how they were made possible: a textbook case of public-private partnership, where the deep-web expertise of a private intelligence firm, KELA, provided the crucial thread that allowed law enforcement to unravel a complex digital conspiracy.
The Anatomy of a Modern Cybercrime Syndicate
TeamPCP, tracked by Google's threat analysis group as UNC6780, did not begin as a sophisticated hacking collective. Its origins were humbler, operating a Telegram channel from late 2025 to broker stolen data. But their evolution was swift and alarming. The group quickly pivoted to a far more destructive and lucrative enterprise: software supply chain attacks. Instead of attacking companies one by one, they targeted the very developer tools and security scanners that thousands of organizations trust, turning these trusted platforms into distribution channels for malware.
Their breakthrough came in February 2026, when they identified and exploited a critical oversight: an incomplete credential rotation at Aqua Security following a previous breach. This allowed them to obtain a service-account token for the company's widely used Trivy vulnerability scanner. Between March 19 and 24, TeamPCP launched four attack waves, using their access to force-push malicious code into Trivy's project tags. The compromise, now tracked as CVE-2026-33634, created a cascading disaster. Downstream users of Trivy, believing they were running a legitimate security tool, were in fact infecting their own systems.
From this beachhead, the group's attacks spread to other key developer resources, including Checkmarx KICS, OpenVSX, and LiteLLM. Their primary weapon was a self-propagating worm dubbed 'Mini Shai-Hulud', a piece of malware designed to automate credential theft and spread itself across package registries. Once inside a victim's network, the code would scan for sensitive data—cloud credentials, API keys, and other secrets—and exfiltrate it to attacker-controlled servers. The group's audacity was such that they even open-sourced the worm's framework on GitHub in May, a move that both boasted of their capability and dangerously lowered the barrier for other would-be attackers.
To monetize their access, TeamPCP partnered with the Vect ransomware operation, supplying stolen credentials for initial access in exchange for a cut of the profits. This hybrid model demonstrates the fluid, business-like nature of modern cybercrime, where specialized groups form strategic alliances to maximize their impact and revenue.
A New Blueprint for Justice: The Public-Private Partnership
The digital trail left by TeamPCP was complex, but not invisible. The seeds of this week's takedown were sown five months earlier, in the Tel Aviv offices of cyber intelligence firm KELA. In March 2026, its Cyber Intelligence Center shared detailed reports with the AFP and FBI, unmasking the alleged identities of TeamPCP members and mapping their infrastructure. This initial intelligence-sharing continued as a collaborative effort throughout the ensuing investigation.
One of the men arrested this week, 21-year-old Ruben Thomson, was explicitly named in a KELA threat actor profile report shared with law enforcement in April. This level of granular, actionable intelligence is where the synergy between private firms and government agencies becomes transformative. While law enforcement possesses the legal authority to execute warrants, make arrests, and prosecute, private firms like KELA operate with an agility and focus that allows them to dive deep into the criminal underground, monitor dark web forums, and connect disparate pieces of data in real-time.
AFP Commander Graeme Marshall noted that this industry reporting was “crucial” to the investigation, which formally began in April after the agencies received tips from multiple cyber threat assessment companies. “Cybercrime syndicates are becoming increasingly organised and often operate like professional businesses,” Marshall stated, highlighting the challenge for traditional policing. The sentiment was echoed across the Pacific. “This operation underscores the global reach and strength of its international partnerships,” said FBI Cyber Division Assistant Director Brett E. Leatherman, emphasizing the necessity of a unified front to “impose costs on criminal actors who seek to victimize the American and international public.”
The Ripple Effect: Costs, Consequences, and the Path Forward
The scale of TeamPCP's alleged campaign is staggering: over 1,000 organizations compromised, more than 500,000 credentials stolen, and at least 300 gigabytes of data exfiltrated. The global remediation costs are estimated to be in the hundreds of millions of dollars. The victims were not abstract entities; they included high-profile technology companies like Red Hat, SAP, and OpenAI, and even government bodies like the European Commission.
The consequences for the alleged perpetrators are now severe. Ruben Thomson faces eight charges in Australia, including unauthorized data modification and dealing with proceeds of crime, with potential penalties of up to 20 years' imprisonment. He has also been indicted by a federal grand jury in the United States. The second man, 23-year-old Louis Michael Gaebler, faces six charges. With both men remanded in custody and investigators poring over a large volume of seized data, further charges and arrests have not been ruled out.
For business leaders and IT professionals, this case is a harsh lesson in the fragility of the digital supply chain. The FBI's FLASH alert from July, detailing TeamPCP's methods, serves as a critical resource. The primary takeaway is that exfiltrated credentials must be treated as a persistent risk. Organizations are strongly advised to rotate all CI/CD secrets, publishing tokens, and cloud credentials that were even potentially accessible. Furthermore, a simple but effective mitigation strategy is to pin dependencies in development workflows, such as GitHub Actions, to specific, verified commit SHA hashes rather than floating version tags, which can be maliciously updated. While these arrests are a significant victory, the threat is far from neutralized. The tools and techniques used by TeamPCP are now widely understood, and the open-sourcing of their worm framework means the underlying danger to the software ecosystem persists.
Topics & Related
Threat Landscape
📝 This article is still being updated
Are you a relevant expert who could contribute your opinion or insights to this article? We'd love to hear from you. We will give you full credit for your contribution.
Contribute Your Expertise →