FBI: TeamPCP Compromised Dev Tools to Steal Cloud Credentials

2026-07-04T14:51:46Z40aec207f54f4d18272f0b64a421c1162a724584173b712b7f80e4878019c16c
AI-drivenAdobe-patchesCISA-KEVFortiBleedFortiGatePegasuscloud-credentialscredential-theftdeveloper-toolsmalwareproxy-networkransomwarespywaresupply-chainsupply-chain-attacktakedownvulnerabilities

What happened

Feed highlights multiple high-impact incidents and advisories: the FBI issued a FLASH alert on TeamPCP — a criminal group that poisoned trusted developer/security tools to harvest cloud credentials, distribute malware via software updates, and extort victims; Sysdig documents JADEPUFFER, an end-to-end LLM-driven ransomware operation that automated exploitation, credential theft, lateral movement, and encryption; a Vercel breach tied to use of an unvetted AI tool (shadow AI supply‑chain compromise) that led to data theft and a $2M extortion demand; Google/FBI/Lumen disruption of the NetNut mal‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
40aec207f54f4d18272f0b64a421c1162a724584173b712b7f80e4878019c16c
Enrichment time
2026-07-04T14:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.