TeamPCP Supply Chain Campaign: Update 007 - Cisco Source Code Stolen via Trivy-Linked Breach, Google GTIG Tracks TeamPCP as UNC6780, and CISA KEV Deadline Arrives with No Standalone Advisory, (Wed, Apr 8th)
This is the seventh update to the TeamPCP supply chain campaign threat intelligence report,&#;x26;#;xc2;&#;x26;#;xa0;"When the Security Scanner Became the Weapon"&#;x26;#;xc2;&#;x26;#;xa0;(v3.0, March 25, 2026).&#;x26;#;xc2;&#;x26;#;xa0;Update 006&#;x26;#;xc2;&#;x26;#;xa0;covered developments thr...
Aggregated from SANS ISC
This article was automatically aggregated from an external source. Content may be summarized.
Full Analysis
This is the seventh update to the TeamPCP supply chain campaign threat intelligence report,x26;#;xc2;x26;#;xa0;"When the Security Scanner Became the Weapon"x26;#;xc2;x26;#;xa0;(v3.0, March 25, 2026).x26;#;xc2;x26;#;xa0;Update 006x26;#;xc2;x26;#;xa0;covered developments through April 3, including the CERT-EU European Commission breach disclosure, ShinyHuntersx26;#;39; confirmation of credential sharing, Sportradar breach details, and Mandiantx26;#;39;s quantification of 1,000+ compromised SaaS environments. This update consolidates five days of intelligence from April 3 through April 8, 2026.
Source: SANS ISC
Original Source
SANS ISC