<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Arrest on CuraSec</title><link>https://curasec.metacog.co.kr/tags/arrest/</link><description>Recent content in Arrest on CuraSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 27 Aug 2026 21:01:55 +0000</lastBuildDate><atom:link href="https://curasec.metacog.co.kr/tags/arrest/index.xml" rel="self" type="application/rss+xml"/><item><title>Australia arrests alleged TeamPCP supply-chain hackers</title><link>https://curasec.metacog.co.kr/insights/2026-08-27-australia-arrests-alleged-teampcp-hackers-behind-supply-chai/</link><pubDate>Thu, 27 Aug 2026 21:01:55 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-08-27-australia-arrests-alleged-teampcp-hackers-behind-supply-chai/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Learn:&lt;/strong> Arrest confirms a supply-chain threat group was active at scale, but the summary provides no IOCs, affected packages, or specific compromised registries to audit against — no concrete remediation action available from this item alone.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Learn:&lt;/strong> Attribution news without published IOCs, TTPs, or ATT&amp;amp;CK mappings offers no immediate detection or hunting surface; useful background on an active supply-chain threat actor if future intelligence on this group is released.&lt;/li>
&lt;li>&lt;strong>Leader — Learn:&lt;/strong> Law enforcement action against a supply-chain attack group is useful context for board conversations on software supply-chain risk, but the thin summary lacks named victims or vendors needed to assess whether your organization&amp;rsquo;s suppliers were targeted.&lt;/li>
&lt;/ul></description></item><item><title>Two Alleged TeamPCP Supply-Chain Hackers Arrested in Australia</title><link>https://curasec.metacog.co.kr/insights/2026-08-27-two-alleged-teampcp-hackers-arrested-in-australia/</link><pubDate>Thu, 27 Aug 2026 21:01:55 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-08-27-two-alleged-teampcp-hackers-arrested-in-australia/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Learn:&lt;/strong> TeamPCP allegedly planted malicious open-source packages in the longest-running supply-chain attack spree on record; no specific package names are yet attributed in this report, so monitor follow-on coverage for affected libraries and run a dependency audit once IOCs are published.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Learn:&lt;/strong> No IOCs or ATT&amp;amp;CK-mappable TTPs are provided in current reporting; treat this as a campaign retrospective to inform supply-chain threat modeling once fuller technical details emerge from the prosecution.&lt;/li>
&lt;li>&lt;strong>Leader — Plan:&lt;/strong> A group blamed for compromising thousands of businesses via malicious open-source software has been arrested; brief leadership on supply-chain risk posture this quarter and establish a watch for any vendor or package attribution that surfaces from the AFP investigation.&lt;/li>
&lt;/ul></description></item></channel></rss>