Australian authorities arrested two men in Perth on Friday for their alleged roles in the cybercrime group known as TeamPCP.
The arrests mark a significant blow to a group accused of weaponizing open-source software to extort businesses worldwide. By compromising the software supply chain, the group could infiltrate thousands of systems simultaneously, bypassing traditional perimeter defenses.
The suspects, aged 21 [1] and 23 [1], were apprehended in a joint operation involving the Australian Federal Police (AFP), the FBI, and the Western Australian Police Force (WAPF). The two men face a total of 14 charges [5] related to their activities.
Authorities said the pair helped create malicious open-source software used to conduct a prolonged series of supply-chain attacks. This campaign lasted nine months [4] and targeted more than 1,000 organizations [3] across the globe.
TeamPCP reportedly utilized these vulnerabilities to gain unauthorized access to corporate networks, which then allowed them to extort the infected businesses. The operation in Perth is the culmination of a coordinated effort between U.S. and Australian law enforcement to dismantle the group's infrastructure.
The AFP and its partners said the operation targeted the group's ability to deploy further malicious updates to unsuspecting software users. The suspects remain in custody as the legal process begins in Western Australia.
“The suspects, aged 21 and 23, were apprehended in a joint operation involving the Australian Federal Police, the FBI, and the Western Australian Police Force.”
This case highlights the growing vulnerability of the global software supply chain, where trust in open-source repositories is exploited to deliver malware. The involvement of the FBI and AFP underscores the necessity of international cooperation to track cybercriminals who operate across borders, as local jurisdictions often lack the visibility to trace the origin of distributed software attacks.



