Executive Summary
- SentinelLABS has identified PCPJack, a credential theft framework that worms across exposed cloud infrastructure and removes artifacts associated with TeamPCP, a threat actor persona who claimed several high-profile supply chain intrusions throughout early 2026.
- The toolset harvests credentials from cloud, container, developer, productivity, and financial services, then exfil...
By analyzing the similarities between PwndLocker and Sliver, it is evident that they were developed by the same threat actor group, suggesting a level of sophistication and coordination in their operations. This raises concerns about the potential targets and scope of these attacks, as both malware families have demonstrated the ability to compromise Windows systems and exfiltrate sensitive data.
Moreover, the use of garble obfuscation tool in both malware suggests an effort to evade detection b...
