TeamPCP hackers advertise Mistral AI code repos for sale

2026-05-15T01:23:28Z5f292156cd15e2dec831bf5e7bd83652292f66aeddd578938f8fc5ebfb9c7bc0
auth-bypassbitlockerdata-exfiltrationeximkongtukelinux-kernelmistralmuddywaternginxpoCprivilege-escalationpwn2ownransomwaresupply-chainsupportassisttanstackteampcpwordpresszero-day

What happened

A batch of high-impact security incidents reported by BleepingComputer: an actively exploited Cisco Catalyst SD‑WAN authentication bypass (CVE-2026-20182) allowing administrative access; a critical Exim RCE affecting some configurations; a new Linux kernel privilege-escalation flaw (Fragnesia, CVE-2026-46300); WordPress Burst Statistics auth-bypass being exploited for admin takeover; TanStack supply-chain compromises that breached two OpenAI employee devices and prompted code-signing rotations; public PoCs for BitLocker bypass/privilege escalation (YellowKey, GreenPlasma); and data theft/encry

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
5f292156cd15e2dec831bf5e7bd83652292f66aeddd578938f8fc5ebfb9c7bc0
Enrichment time
2026-05-15T01:23:28Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · TeamPCP hackers advertise Mistral AI code repos for sale · Baitaphish