Australian Federal Police arrested two men in Perth on Thursday, August 27, 2026, accusing them of being members of TeamPCP, the hacking group blamed for a series of high-profile supply-chain attacks that compromised open-source software used by thousands of companies, including AI startups Mercor and LiteLLM, as well as tech giants like OpenAI and GitHub.
The two suspects, who have not been publicly named by authorities, face more than a dozen charges spanning hacking, money laundering, and other cybercrime offenses. They are expected to appear in court later on Thursday, according to an AFP statement. The arrests cap a months-long investigation that began in April 2026 after multiple cybersecurity firms flagged suspicious activity to Australian authorities.
Also read: CivilGrid raises $26M to map what's buried beneath U.S. cities
A supply-chain attack that spiraled
TeamPCP’s method was particularly insidious: rather than attacking companies directly, the group targeted the software supply chain itself. They broke into popular open-source projects and maliciously modified the code, knowing that thousands of developers and businesses would unknowingly download the tainted versions.
One of the most damaging incidents involved Trivy, a widely used vulnerability scanner. When the attackers tampered with Trivy’s code, every organization relying on the tool became a potential victim. That included LiteLLM, a popular AI gateway, and Mercor, an AI recruiting platform. The malicious code was designed to steal private keys and other sensitive credentials, which the hackers then used to access cloud storage systems and, in some cases, customer data.
Also read: Chinese automakers are following Tesla’s bet that robots are the next big profit machine
The scale of the operation was staggering. FBI Cyber Division chief Brett Leatherman told reporters that the two alleged TeamPCP members are accused of hacking into more than a thousand organizations. Authorities say the group stole over half a million credentials to fuel further intrusions.
Beyond the open-source attacks, TeamPCP is also suspected of breaching the European Commission’s cloud infrastructure, a significant escalation that drew international attention from law enforcement agencies.
How the suspects were identified
The investigation into TeamPCP was a collaborative effort. Australian police said they received initial leads from multiple cybersecurity companies in April 2026, which triggered a coordinated operation involving the AFP, the FBI, and other international partners.
Independent cybersecurity journalist Brian Krebs played a notable role in the case. In a report published Thursday, Krebs said he had been in contact with one of the now-arrested suspects, who used the online handle “Ellis.” The journalist identified the individual as Ruben Thomson, who allegedly claimed to have led TeamPCP until March 2026. Krebs said Thomson made operational mistakes that allowed him to link the hacker handle to a real identity.
During a press conference on Wednesday announcing the arrests, Australian officials said they had seized a large quantity of allegedly stolen data, along with devices and other electronics from the suspects. They also said they planned to notify victims of the attacks, though no timeline was provided.
What this means for the cybersecurity arena
The arrests represent a significant win for law enforcement in the fight against supply-chain attacks, a threat that has grown increasingly common as cybercriminals realize they can compromise one tool to reach thousands of downstream victims. The attack on Trivy was particularly concerning because it affected a security tool—the very software companies use to protect themselves.
For the AI industry, the timing is notable. Mercor and LiteLLM are both part of a rapidly expanding AI ecosystem where startups rely heavily on open-source libraries and cloud infrastructure. A breach at this level underscores the risks of dependency on third-party code, even from trusted sources.
The case also raises questions about extradition. It remains unclear whether the U.S. Justice Department will seek to bring the suspects to American courts, given the FBI’s involvement and the number of U.S.-based victims. A spokesperson for the FBI declined to comment when contacted by TechCrunch.
For now, the focus is on the legal proceedings in Perth. The AFP has not ruled out further arrests, and the investigation into TeamPCP’s broader network appears to be ongoing. As the court case unfolds, more details are likely to emerge about the group’s operations and the full extent of the damage they caused.
This article is for informational purposes only and does not constitute financial, legal, or investment advice. The cybersecurity arena is volatile and evolving; readers should consult official sources and professionals for guidance.