TeamPCP Injects Malware Into More Than 1,000 Open Source Packages
techcybersecuritysoftware 2 posts · 2 accounts
A CyberScoop report described how hacker group TeamPCP exploited gaps in the open-source trust model and software distribution methods to compromise more than 1,000 software packages with malware.
From the sources (2 posts)
@techmemeHow hacker group TeamPCP exploited the open source trust model and distribution method to compromise and inject malware into over 1,000 software packages (@mkapko / CyberScoop) (Visit Techmeme dot com for the link and full context!)
@techsnifTeamPCP compromises over 1,000 open source packages by exploiting trust model gaps