<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks]]></title><description><![CDATA[<p dir="auto">The Australian Federal Police (AFP) has charged two Western Australian men with a combined total of 14 offences for their alleged involvement in the cybercrime group known as <strong>TeamPCP</strong>. The group is accused of orchestrating the <strong>March 2026</strong> supply chain compromise of open-source security scanners <strong>Trivy</strong> and <strong>Checkmarx KICS</strong>, as well as the AI gateway <strong>LiteLLM</strong>.</p>
<p dir="auto"><strong>Louis Michael Gaebler</strong>, 23, and <strong>Ruben Ian Thomson</strong>, 21, appeared in the Perth Magistrates Court on August 27. The charges follow an extensive investigation into attacks that targeted widely used developer tools, raising significant concerns about software supply chain integrity. The AFP has not yet disclosed specific details regarding the method of initial access or the full extent of the data compromised during these incidents.</p>
<p dir="auto">Key facts from the court proceedings include:</p>
<ul>
<li>The two individuals face a combined total of <strong>14 criminal charges</strong>.</li>
<li>The alleged attacks occurred in <strong>March 2026</strong>.</li>
<li>The affected projects include <strong>Trivy</strong>, <strong>Checkmarx KICS</strong>, and <strong>LiteLLM</strong>.</li>
<li>The suspects appeared in court on <strong>August 27</strong>.</li>
</ul>
<p dir="auto">The case underscores the growing threat landscape surrounding open-source dependencies, where a single compromised component can cascade across numerous downstream organizations. Further hearings will determine the admissibility of evidence and potential bail conditions.</p>
<p dir="auto">Source: <a href="https://thehackernews.com/2026/08/alleged-teampcp-hackers-charged-in.html" target="_blank" rel="noopener noreferrer nofollow ugc">The Hacker News</a></p>
<p dir="auto">Does your organization use any of the affected open-source tools in its CI/CD pipeline, and have you audited your recent builds for signs of tampering?</p>
]]></description><link>https://xploitlk.com/topic/152/alleged-teampcp-hackers-charged-in-australia-over-major-supply-chain-attacks</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 12:36:29 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/152.rss" rel="self" type="application/rss+xml"/><pubDate>Sun, 30 Aug 2026 08:30:27 GMT</pubDate><ttl>60</ttl></channel></rss>