Authorities arrest 2 alleged members of prolific hacking group TeamPCP
摘要
澳大利亚警方周三宣布逮捕两名涉嫌参与黑客组织TeamPCP网络犯罪的男子,并对二人提出14项指控。该组织在九个月内通过供应链攻击感染全球逾1000家组织,其手法是在开源软件中植入可自我传播的恶意代码,利用CI/CD管道实现病毒式扩散。警方未公布嫌疑人姓名,仅透露二人居住在西澳大利亚州,但网络安全媒体KrebsOnSecurity经长期调查披露了其身份及导致落
Authorities in Australia said Wednesday that they arrested two men accused of participating in cybercrimes for TeamPCP, a prolific group of hackers that, over nine months, has carried out a relentless series of supply-chain attacks that infected more than 1,000 organizations worldwide.
In a statement, the Australian Federal Police said the two men were arrested and charged with 14 offenses. The statement said the men were members of TeamPCP, which by the authorities’ count, compromised more than 1,000 organizations worldwide. The statement didn’t identify the men, except to say they lived in the Western Australian towns of Cottesloe and Mandurah. KrebsOnSecurity, citing a lengthy investigation, provided what it reports to be both defendants' names, along with an extensive background of their lives and the mistakes that led to their downfall.
The hacks that keep on hacking
TeamPCP has vexed law enforcement officials and security personnel around the world since it emerged in December. The group is best known for a sustained series of supply-chain attacks that laced open source software with malware that self-propagated from one package to another. The viral infections worked by targeting organizations’ CI/CD pipelines, which are used to rapidly develop, update, and deploy software.
转载信息
评论 (0)
暂无评论,来留下第一条评论吧