Hacker Group TeamPCP Conducts Large-Scale Open Source Code Poisoning Campaign
Security researchers have identified a hacker group called TeamPCP as responsible for a campaign of software supply chain attacks that is being described as unprecedented in scale. The group has been systematically poisoning open source code repositories, with GitHub recently becoming their latest target.
TeamPCP operates by introducing malicious commits