Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Threat Actors team pcp

Description

The popular PyPI package lightning experienced a supply chain attack affecting versions 2.6.2 and 2.6.3, published on April 30, 2026. The compromise introduced malicious code that executes automatically upon module import, downloading Bun JavaScript runtime and executing an 11MB obfuscated payload. The attack harvests credentials including GitHub tokens, npm tokens, cloud credentials from AWS, Azure, and Google Cloud, while targeting CI/CD environments. The malicious code poisons GitHub repositories by injecting backdoored files impersonating Claude Code commits and infects local npm packages through tarball manipulation. The attack shows similarities to previous Shai-Hulud campaigns in terms of credential targeting and obfuscation methods. Evidence suggests the maintainer's GitHub account (pl-ghost) was compromised, with suspicious branch operations and disclosure suppression indicating ongoing attacker control. The incident affects a widely-used deep learning framework receiving millions of monthly downl...

AI Analysis

· 1 week ago

Executive Summary

Team Pcp is a sophisticated threat actor targeting supply chains through PyPI packages, compromising widely used libraries like Lightning to inject malicious code. Their primary focus appears to be credential harvesting and disrupting CI/CD environments, with similarities to the Shai-Hulud campaign.

Goals & Targeting

Team Pcp aims to harvest credentials and disrupt software supply chains, likely to gain long-term access or intelligence. Their targeting of widely used libraries suggests a focus on maximizing impact and persistence in critical IT ecosystems. Typical victims include organizations utilizing popular Python packages and CI/CD tools.

Enhanced Description

Team Pcp leverages supply chain attacks by compromising Python Package Index (PyPI) packages such as Lightning. They injected malicious code into versions 2.6.2 and 2.6.3, which executes upon import, downloading an obfuscated payload (11MB) delivered via the Bun JavaScript runtime. This attack harvests GitHub, npm, and cloud credentials from AWS, Azure, and Google Cloud, targeting CI/CD environments. Attackers impersonated Claude Code commits to poison GitHub repositories and manipulate npm tarballs, indicating high sophistication. The campaign shows parallels with Shai-Hulud's credential-targeting tactics.

Key Capabilities

  • Supply chain compromise
  • Obfuscation techniques
  • Credential harvesting
  • GitHub repository manipulation
  • CI/CD environment targeting

MITRE ATT&CK Tactics

Invasion of Privacy: Data Access
Subversion of Systems: Disruption
Credential Access

ATT&CK Techniques

T1566.001
T1566.002
T1055.003
T1049.001

Software / Tooling

Custom payload delivery via PyPI packages
Obfuscation tools (not specified)
Bun JavaScript runtime

Campaigns & Victims

Team Pcp's campaign demonstrates a focus on disrupting critical software supply chains. They likely use compromised maintainer accounts to insert malicious code, as seen with GitHub account 'pl-ghost'. This incident highlights their ability to manipulate trusted repositories and packages, suggesting ongoing operations beyond this event.

IOC Patterns

  • Malicious PyPI package downloads
  • Large obfuscated payload execution via JavaScript runtime
  • Unusual activity in GitHub branches
  • Tampered npm tarballs

Recommended Actions

  • Implement rigorous supply chain security measures for software dependencies.
  • Use automated tools (e.g., Snyk) to scan for malicious packages.

Suggested Tags

APT
Supply Chain Attack
Espionage

Confidence Assessment

High confidence in their existence and activities based on the attack's detailed evidence. Limited data exists beyond this incident, so uncertainty remains about their full capabilities.

ATT&CK Techniques

No techniques linked yet.

Software / Tooling

No tools linked yet.

Campaigns / Victims

No campaigns linked yet.

Observed Data

No observed data linked yet.

Indicators of Compromise

No IOCs linked yet.

References

No references recorded yet.

Intel Summary

0

Techniques

0

Tools

0

Campaigns

0

IOCs

0

Observed Data

0

Tactics

Tags

Supply Chain Attack
Backdoor / C2
APT
Espionage

Details

Type
Unknown
Confidence
55%
Added
May 6, 2026
No notes yet. Click "Add Note" to create the first analysis note.
No opinions yet. Be the first to assess this intelligence.
Leaving Threaticon

This link opens an external site that isn't part of the platform.