FBI: TeamPCP Compromised Dev Tools to Steal Cloud Credentials
2026-07-04T14:51:46Z•40aec207f54f4d18272f0b64a421c1162a724584173b712b7f80e4878019c16c
AI-drivenAdobe-patchesCISA-KEVFortiBleedFortiGatePegasuscloud-credentialscredential-theftdeveloper-toolsmalwareproxy-networkransomwarespywaresupply-chainsupply-chain-attacktakedownvulnerabilities
What happened
Feed highlights multiple high-impact incidents and advisories: the FBI issued a FLASH alert on TeamPCP — a criminal group that poisoned trusted developer/security tools to harvest cloud credentials, distribute malware via software updates, and extort victims; Sysdig documents JADEPUFFER, an end-to-end LLM-driven ransomware operation that automated exploitation, credential theft, lateral movement, and encryption; a Vercel breach tied to use of an unvetted AI tool (shadow AI supply‑chain compromise) that led to data theft and a $2M extortion demand; Google/FBI/Lumen disruption of the NetNut mal‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 40aec207f54f4d18272f0b64a421c1162a724584173b712b7f80e4878019c16c
- Enrichment time
- 2026-07-04T14:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.