36
Techniques
3
Toolsets
2
CVEs Referenced
1
KEV Entries
CISA Known Exploited
About TeamPCP

TeamPCP is a financially-motivated, cloud-native threat group that has been active since at least September 2025. Initially focused on ransomware and cryptocurrency theft, TeamPCP shifted in early 2026 to systematic, worm-driven credential theft and software supply chain attacks targeting Continuous Integration and Continuous Delivery (CI/CD) workflows. TeamPCP has monetized access through extortion and through partnerships with ransomware actors including Vect and CipherForce.

View MITRE record ↗

Toolsets (3)
🐛
Malware · Containers, Linux
🐛
Malware · Containers, IaaS, Linux, macOS
🐛
Malware · Containers, Linux, macOS, SaaS
CVEs Referenced (2 · 1 CISA KEV)
CVE-2014-7169View full details on NVDKEV
CVE-2016-6662View full details on NVD
↑