The Rise and Fall of TeamPCP: Inside the Supply Chain Saboteurs Who Humiliated Tech Giants

In a sweeping operation that marks a turning point for global software supply chain security, the Australian Federal Police (AFP) have arrested two men from Western Australia, ending the reign of "TeamPCP." The group, a loosely affiliated but highly effective syndicate of cybercriminals, is responsible for what security analysts describe as the longest-running and most disruptive software supply chain attack spree in history.

The suspects, identified as 21-year-old Ruben Ian Thomson and 23-year-old Michael Gaebler, were taken into custody in Perth following a joint investigation involving the AFP, the FBI, and Western Australia Police. The pair allegedly orchestrated a campaign that utilized a self-propagating worm, "Shai-Hulud," to infiltrate thousands of businesses worldwide, turning the very tools developers use to build the modern web into weapons of corporate extortion.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

The Genesis of a Cyber-Insurgency

TeamPCP first emerged on the digital landscape in late 2025. Unlike traditional, rigid criminal hierarchies, TeamPCP functioned more like a volatile, peer-to-peer collective of threat actors. At its core was a "center of gravity" identified by security researchers as Ruben Thomson, an individual who operated under various handles, including "EllisD25," "BulkDMT," and most infamously, "Deadcatx3."

The group’s operational philosophy was built on the exploitation of the "trust model" within open-source development. By targeting developers with phished credentials, TeamPCP gained access to legitimate code repositories on platforms like GitHub and NPM. Once inside, they injected malicious code into popular software tools. When other developers downloaded these "updated" tools, the malware spread further, creating a cyclical, self-replicating epidemic of compromised infrastructure.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

Chronology of a Digital Siege

The scale of TeamPCP’s influence grew rapidly throughout 2026:

  • March 2026: The group executed a high-profile attack on LiteLLM, an open-source gateway connecting users to over 100 Large Language Models (LLMs). According to an analysis by CloudSEK, this single breach harvested cloud service keys and sensitive credentials from more than 2,500 organizations, including some of the world’s largest technology firms.
  • May 2026: TeamPCP claimed responsibility for compromising at least 3,800 code repositories on GitHub. The breach was triggered after a single developer installed a malicious extension, which allowed the group to harvest proprietary code and credentials at an unprecedented scale.
  • June 2026: Investigative journalists and security firms began to piece together the real-world identities behind the digital personas. Clues left behind—ranging from reused email addresses to business registration records in Western Australia—began to tighten the net around the group’s leadership.
  • August 2026: The AFP, acting on intelligence gathered during the months-long investigation, conducted raids in Perth. Thomson and Gaebler were apprehended and subsequently denied bail.

The "Cybercats" and the Culture of OpSec Failure

While the technical sophistication of TeamPCP was high, their operational security (OpSec) was, by all accounts, disastrous. The group communicated primarily through a Matrix chat server they dubbed "Cybercats." In these channels, members of various cybercrime gangs—including those behind major data breaches at automobile manufacturers like BMW, Audi, and Honda—coordinated their efforts.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

Thomson, in particular, displayed a reckless disregard for anonymity. His handles—ranging from "Express" to "Deadcatx3"—were tied to a trail of breadcrumbs: Upwork profiles, business registrations for entities like "OPSEC Express," and even Google Maps reviews in Western Australia. Investigators were able to link these aliases to the Thomson family’s home address and IP logs, effectively unmasking the "criminal mastermind" through his own public records.

During an interview with KrebsOnSecurity conducted via Signal shortly before his arrest, Thomson (referring to himself as "Ellis") was startlingly candid. He spoke of his struggles with drug addiction, his history of homelessness, and his motivation for joining the cybercrime ecosystem. "Blackhatting is fun," he remarked. "There are actual rewards and incentives to learn and you grow with your team." He expressed a resignation toward his inevitable capture, noting that he felt he lacked the support and guidance required to channel his skills into a legitimate career.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

Official Responses and Legal Consequences

The AFP has confirmed that the two men face a combined 14 cybercrime offenses. The speed and coordination of the arrest were praised by international partners, including the FBI, as a major victory against the growing threat of AI-assisted, decentralized cybercrime.

"The arrest of these individuals is a clear signal that the anonymity of the digital underground is not absolute," said an AFP spokesperson. "These men targeted thousands of global businesses, and they will now face the full weight of the law."

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

In court, the prosecution argued that the scale of the damage—which spanned continents and threatened the integrity of critical AI infrastructure—necessitated the denial of bail. Both men remain in custody, with their next court appearance scheduled for September 18, 2026.

Implications: The New Era of Supply Chain Security

The TeamPCP saga has served as a "wake-up call" for the tech industry. Charlie Eriksen, a security researcher at Aikido Security, argues that TeamPCP represents a new breed of threat actor—one that isn’t purely state-sponsored or purely ideological, but a hybrid driven by attention, financial gain, and the thrill of disruption.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

The most lasting impact of their campaign may be the fundamental change in how platforms handle updates. In direct response to the "Shai-Hulud" worm, GitHub introduced a three-day "cooldown" mechanism for Dependabot. This feature forces a mandatory delay between the publication of a new software version and its automated adoption, providing a critical window for security researchers to identify and purge malicious code.

"TeamPCP managed to wake up Microsoft to the fact that they had become negligent," Eriksen noted. "They humiliated these platforms into action, forcing them to implement security safeguards that the community had been requesting for years."

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

The Role of AI in Lowering the Barrier to Entry

Perhaps the most concerning takeaway from the TeamPCP incident is the role of Artificial Intelligence. Experts note that TeamPCP did not need to be master programmers to achieve their goals; they simply needed to be persistent. Large Language Models allowed the group to bridge the gap between theoretical research and operational exploitation, compressing years of required skill development into a few months of trial and error.

This "low-barrier-to-entry" environment creates a paradoxical threat: the criminals are often "noisy" and prone to amateurish mistakes, yet they possess the power to cause systemic damage. As the industry looks toward the future, the TeamPCP case highlights the urgent need for a shift in how open-source trust is managed.

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia – Krebs on Security

The era of blind trust in software updates is effectively over. The arrest of Thomson and Gaebler brings an end to their specific campaign, but it leaves behind a legacy of heightened vigilance. For the global business community, the lesson is clear: the supply chain is only as secure as its most vulnerable link, and in an age of automated exploitation, that link is now under constant, calculated pressure.