TeamPCP's Ruthless Hijack of Security Scanners: 500K Machines, 300GB Stolen
Attackers slipped infostealers into GitHub Actions and PyPI, turning vulnerability scanners against their users. Over 500,000 machines lost cloud tokens, SSH keys, and Kubernetes secrets in this escalating nightmare.
Threat DigestApr 03, 20264 min read11 views
⚡ Key Takeaways
TeamPCP compromised security tools like Trivy and LiteLLM, stealing secrets from 500K machines.𝕏