According to the AFP, the syndicate created malicious open-source software to defraud thousands of businesses globally, utilizing a self-propagating worm called Shai-Hulud to embed malicious code into tools hosted on public repositories like GitHub.
The group’s activities have caused significant disruption to global technology infrastructure, including a notable breach of LiteLLM, an open-source gateway for artificial intelligence (AI) models.
Security firm CloudSEK reported that this specific attack harvested cloud service keys and secrets from over 2,500 organizations, including major technology firms.
By targeting the foundation of modern software development, TeamPCP incentivized collaborators to compromise the most popular code libraries, effectively turning widely used developer tools into delivery mechanisms for credential theft and data extortion.
In response to these persistent threats, major platforms have implemented new security mechanisms to protect AI and cloud infrastructure.
GitHub recently introduced a "cooldown" period—a deliberate delay before automated tools fetch new software updates—to give maintainers time to identify and remove poisoned code.
While the arrested individuals face 14 cybercrime charges in Perth, the case highlights an emerging shift in the threat landscape where individual actors use automated tools to operate at a scale previously reserved for organized criminal entities or state actors.