CHECKLEAKED.CC

Loading

Classic site

DAILY BRIEFING

Australia arrests alleged TeamPCP hackers behind supply-chain attacks

Australian police charge two alleged TeamPCP members over major supply chain attacks as Microsoft patches Windows 11 issues.

Law enforcement actions and platform remediation take center stage today. Australian authorities have charged two men allegedly linked to TeamPCP, the cybercrime group responsible for high-profile software supply chain compromises targeting developer tools and open-source infrastructure.

Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks

Australian police charged two men linked to TeamPCP for supply chain attacks compromising Trivy, Checkmarx KICS, and LiteLLM in March 2026. The FBI warns that exfiltrated credentials remain a long-term risk.

Why it matters
Exfiltrated secrets from CI/CD systems allow attackers long-term persistence and downstream access across compromised software development infrastructure.
What to do
Rotate all CI/CD secrets, publishing tokens, and cloud credentials accessible during the breach window.
  • TeamPCP
Read the original

Australia arrests alleged TeamPCP hackers behind supply-chain attacks

Australian authorities have arrested and charged two young men accused of belonging to TeamPCP, a hacking group linked to a string of far-reaching developer supply chain attacks.

Why it matters
Law enforcement actions against supply-chain threat actors can disrupt active operations that compromise developer ecosystems and downstream dependencies.
  • TeamPCP
Read the original

Microsoft rolls out fix for Windows 11 crashes, gaming issues

Microsoft is deploying a permanent fix for a known issue on Windows 11 that caused system crashes and gaming performance issues.

Why it matters
Windows 11 environments affected by the bug face operational instability and system crashes during resource-intensive tasks like gaming.
  • Microsoft
Read the original

Webinar: How Google Workspace breaches happen and what to do next

Google Workspace breaches frequently stem from social engineering tactics or neglected third-party integrations rather than complex technical exploits.

  • Google
  • Workspace
Read the original

Learn How to Build Security Operations Ready for AI-Powered Attacks

An upcoming webinar with Wiz covers AI threat readiness, highlighting how threat actors leverage advanced AI models to quickly discover vulnerabilities and generate exploit code to outpace traditional defense workflows.

Why it matters
Security operations must adapt as automated AI attacks shorten the time between vulnerability discovery and exploitation across cloud and hybrid environments.
What to do
Prioritize reachable cloud exposures and context-based threat detections to speed up remediation.
  • AI
  • cloud
  • Wiz
Read the original

Key takeaways

  • Australian Federal Police charged Louis Michael Gaebler and Ruben Ian Thomson over alleged TeamPCP supply chain attacks.
  • The FBI advises rotating all CI/CD secrets and cloud credentials exposed during the TeamPCP campaign.
  • Microsoft released a permanent fix resolving Windows 11 system crashes and gaming performance issues.
  • TeamPCP
  • SupplyChain
  • Trivy
  • Checkmarx
  • LiteLLM