An undercover Google analyst infiltrated a notorious supply-chain hacking gang
Google’s threat intelligence group said it had a mole inside TeamPCP's inner circle.
A notorious hacker group called TeamPCP carried out a large-scale hacking campaign that tainted hundreds of open-source programs with malware and breached over a thousand companies. Recently, two alleged members of the group were arrested and charged in Australia. Google's threat intelligence group has revealed that during the peak of TeamPCP's hacking spree, the company had an undercover researcher infiltrate the group.
This allowed Google to monitor the hacking activities from inside, warn affected companies, and even assist in disrupting the group's attempts to exploit victims. At a research conference, Google's researcher Austin Larsen will present the investigation and infiltration details. Larsen claims they followed a trail of security mistakes made by one of the two accused Australians and shared identifying details with law enforcement.
They also received intelligence from another criminal group called ShinyHunters and had an undercover analyst in the group for a considerable period.
Written by urgent.news from Ars Technica's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.