
TeamPCP Supply Chain Attacks
TeamPCP is exploiting trusted npm and PyPI packages to compromise developer environments, steal credentials, and extend attacks across software supply chains.

video-embedSharing threat intelligence is crucial for helping organizations defend against current threats. But there’s always been reluctance about sharing indicators, ranging from worries about trust to revealing too much information about threats targeting an organization. Sydney Jones is Head of Threat Intelligence at CLS Group, which runs foreign exchange settlement infrastructure used by large financial institutions. In this Studio 471, she discusses how she has set up several productive programs to share threat intelligence with Information Sharing and Analysis Centers (ISACs), helping the community reduce risk.
Participants:
Sydney Jones, Head of Threat Intelligence, CLS Group
Jeremy Kirk, Executive Editor, Cyber Threat Intelligence, Intel 471

TeamPCP is exploiting trusted npm and PyPI packages to compromise developer environments, steal credentials, and extend attacks across software supply chains.

An Iranian aligned threat group conducting destructive and espionage focused cyber operations against organizations in Israel and Western countries.

CrazyHunter is a ransomware campaign targeting healthcare that weakens endpoint defenses and escalates privileges before encrypting systems at scale.
Stay informed with our weekly executive update, sending you the latest news and timely data on the threats, risks, and regulations affecting your organization.