# Solo podcast: A deep dive on TeamPCP Page: https://stenobird.com/podcast/risky-business-features-7716365/solo-podcast-a-deep-dive-on-teampcp Text version: https://stenobird.com/podcast/risky-business-features-7716365/solo-podcast-a-deep-dive-on-teampcp.md Podcast: [Risky Business Features](https://stenobird.com/podcast/risky-business-features-7716365) Published: 2026-06-02T08:26:21+00:00 Episode link: https://risky.biz/RBFEATURES24/ Audio file: https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBFEATURES24.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/solo-podcast-a-deep-dive-on-teampcp Duration seconds: 3841 ## Resource In this solo episode, James Wilson takes a detailed look at TeamPCP. It started off by launching clumsy attacks against misconfigured Kubernetes clusters in September 2025. But by February this year, TeamPCP had skilled up and was smashing global software supply chains in the highest profile attacks of 2026. TeamPCP upskilled and turned the software development ecosystem into its personal credential harvesting machine. Here’s how TeamPCP did it, and what we can learn from it. ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/risky-business-features-7716365/episodes/solo-podcast-a-deep-dive-on-teampcp/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/risky-business-features-7716365/solo-podcast-a-deep-dive-on-teampcp.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.