security1 publisher
Google clocks TeamPCP standing up a mass credential-harvesting campaign in under six hours
GTIG's 2026 accounting traces one crew from package-registry compromises on PyPI, npm and Docker Hub to agent instructions that planned and ran the campaign, then out to public malware releases anyone can reuse.
Publishers:securityweek.com
Reality
- Evidence48
- Adoption45
- Hype gap+22
- Incentives72
- Confidence45