Episode

Solo podcast: A deep dive on TeamPCP

Podcast
Risky Business Features
Published
Jun 2, 2026
Duration seconds
3841
Processing state
not_requested
Canonical source
https://risky.biz/RBFEATURES24/
Audio
https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBFEATURES24.mp3
JSON
/v1/public/podcasts/risky-business-features-7716365/episodes/solo-podcast-a-deep-dive-on-teampcp
Markdown
/podcast/risky-business-features-7716365/solo-podcast-a-deep-dive-on-teampcp.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/solo-podcast-a-deep-dive-on-teampcp/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/risky-business-features-7716365/solo-podcast-a-deep-dive-on-teampcp.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

In this solo episode, James Wilson takes a detailed look at TeamPCP. It started off by launching clumsy attacks against misconfigured Kubernetes clusters in September 2025. But by February this year, TeamPCP had skilled up and was smashing global software supply chains in the highest profile attacks of 2026. TeamPCP upskilled and turned the software development ecosystem into its personal credential harvesting machine. Here’s how TeamPCP did it, and what we can learn from it.