The Federal Bureau of Investigation (FBI) and researchers from Sophos have issued urgent warnings about a new, highly efficient cybercrime partnership between the VECT ransomware-as-a-service (RaaS) group and TeamPCP, a criminal gang known for large-scale software supply chain compromises. This alliance creates an "industrialized ransomware" model where TeamPCP steals developer credentials (cloud tokens, SSH keys, etc.) en masse by compromising popular developer tools, and then funnels these credentials to VECT affiliates for ransomware deployment. This streamlined process from credential theft to extortion significantly increases the speed, scale, and risk of ransomware attacks for any organization whose developers use the compromised tools. The FBI's FLASH alert highlights that TeamPCP has already targeted tools like Trivy, KICS, and LiteLLM, putting countless downstream organizations at immediate risk.
This collaboration represents a major shift in the ransomware ecosystem, moving towards a more specialized and efficient assembly-line process.
Sophos has already confirmed at least one VECT ransomware attack that used credentials stolen by TeamPCP, proving this industrialized model is operational.
TeamPCP's methodology for credential harvesting is sophisticated and difficult to detect. Their TTPs include:
T1195.001): They compromise open-source software repositories or packages for popular developer tools. The FBI alert specifically names Trivy, KICS, and LiteLLM as having been targeted.T1500): By modifying these tools, they inject malicious code that executes within the developer's CI/CD pipeline. This environment is often highly privileged, with access to numerous production secrets.T1552): The malicious code is designed to scan for and exfiltrate sensitive data, including cloud access tokens, SSH keys, and Kubernetes secrets.Once these credentials are stolen, they are passed to VECT affiliates. The VECT ransomware operators then use these credentials for:
T1078.004): They use the stolen cloud tokens to access the victim's cloud environment, exfiltrate data, and deploy ransomware on cloud-based systems.T1486): The final stage involves deploying the VECT ransomware to encrypt critical systems and demand a ransom.The industrialization of this attack chain has several critical implications:
No specific file hashes, IPs, or domains were listed in the provided articles.
Detecting this threat requires focusing on the CI/CD pipeline and cloud environment:
Dynamic Analysis.Service Binary Verification.Outbound Traffic Filtering.FBI alert confirms TeamPCP supply chain attacks impacted over 1,000 cloud environments, adding Telnyx Python SDK to compromised tools and providing new hunting hints.
A new FBI FLASH alert confirms the TeamPCP (also known as PCPcat) supply chain campaign has impacted over 1,000 cloud environments, significantly increasing the known scale of the attack. The group has added the Telnyx Python SDK to its list of compromised developer tools, alongside Trivy, KICS, and LiteLLM. New 'Cyber Observables - Hunting Hints' provide actionable detection guidance, including monitoring outbound connections from build agents to unknown IPs, suspicious sts:AssumeRole calls in cloud logs, changes in CI/CD audit logs, and env or printenv commands. TeamPCP is also noted to engage in its own double extortion activities.
New technical observables and hunting hints for TeamPCP/Vect alliance, with expanded ATT&CK/D3FEND mappings and TeamPCP's pivot from CipherForce.
The new report from Sophos provides actionable 'Cyber Observables' for detecting the TeamPCP and Vect ransomware alliance. These include monitoring dependency scanner logs for malicious packages like Trivy and LiteLLM, tracking access to ~/.aws/credentials by unusual processes, and observing developer credential logins from anomalous IPs. It also details TeamPCP's previous ransomware operation, 'CipherForce', and their strategic pivot to an initial access broker role, highlighting the evolving specialization within the cybercrime ecosystem. Expanded MITRE ATT&CK and D3FEND techniques are also provided for enhanced detection and mitigation strategies.
TeamPCP's attack on Aqua Security's Trivy vulnerability scanner results in the theft of over 500,000 credentials.
Sophos publishes a report detailing the partnership between VECT and TeamPCP.
The FBI issues a FLASH alert warning about TeamPCP's supply chain compromises.

Cybersecurity professional with over 10 years of specialized experience in security operations, threat intelligence, incident response, and security automation. Expertise spans SOAR/XSOAR orchestration, threat intelligence platforms, SIEM/UEBA analytics, and building cyber fusion centers. Background includes technical enablement, solution architecture for enterprise and government clients, and implementing security automation workflows across IR, TIP, and SOC use cases.
CyberNetSec.io uses automation to assist source monitoring, deduplication, observable extraction, and structured intelligence generation. Published analysis follows human-defined editorial standards and adds defensive context including MITRE ATT&CK, D3FEND, STIX, and Sigma where applicable. Read our editorial policy.
Help others stay informed about cybersecurity threats
Every tactic, technique, and sub-technique used in this threat has been identified and mapped to the MITRE ATT&CK framework for consistent, actionable threat language.
Observables and indicators of compromise (IOCs) have been extracted and cataloged. Risk has been assessed and correlated with known threat actors and historical campaigns.
Detection rules, incident response steps, and D3FEND-aligned mitigation strategies are included so your team can act on this intelligence immediately.
Structured threat data is packaged as a STIX 2.1 bundle and can be visualized as an interactive graph — relationships between actors, malware, techniques, and indicators.
Sigma detection rules are derived from the threat techniques in this article and can be converted for deployment across any major SIEM or EDR platform.