TeamPCP hackers advertise Mistral AI code repos for sale
2026-05-15T01:23:28Z•5f292156cd15e2dec831bf5e7bd83652292f66aeddd578938f8fc5ebfb9c7bc0
auth-bypassbitlockerdata-exfiltrationeximkongtukelinux-kernelmistralmuddywaternginxpoCprivilege-escalationpwn2ownransomwaresupply-chainsupportassisttanstackteampcpwordpresszero-day
What happened
A batch of high-impact security incidents reported by BleepingComputer: an actively exploited Cisco Catalyst SD‑WAN authentication bypass (CVE-2026-20182) allowing administrative access; a critical Exim RCE affecting some configurations; a new Linux kernel privilege-escalation flaw (Fragnesia, CVE-2026-46300); WordPress Burst Statistics auth-bypass being exploited for admin takeover; TanStack supply-chain compromises that breached two OpenAI employee devices and prompted code-signing rotations; public PoCs for BitLocker bypass/privilege escalation (YellowKey, GreenPlasma); and data theft/encry
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 5f292156cd15e2dec831bf5e7bd83652292f66aeddd578938f8fc5ebfb9c7bc0
- Enrichment time
- 2026-05-15T01:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.