Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
New Malware Framework: Screen Control, Browser & Enables Artifact
May 14, 2026
node-ipc npm Package Compromised in Supply Weekly Downloads
May 14, 2026
TeamPCP and BreachForums Hackers Running $1,000 Contest for Supply
May 14, 2026
Home/CyberSecurity News/TeamPCP and BreachForums Hackers Running $1,000 Contest for Supply
CyberSecurity News

TeamPCP and BreachForums Hackers Running $1,000 Contest for Supply

The cybercrime underworld is turning open-source supply chain attacks into a twisted competition. After months of infiltrating security tools and CI/CD pipelines, the notorious hacking group TeamPCP...

David kimber
David kimber
May 14, 2026 2 Min Read
1 0

The cybercrime underworld is turning open-source supply chain attacks into a twisted competition.

After months of infiltrating security tools and CI/CD pipelines, the notorious hacking group TeamPCP has partnered with BreachForums to launch a disturbing new contest.

The objective is to compile as many open-source packages as possible. The prize, however, is a surprisingly small payout of $1,000 in Monero cryptocurrency.

According to dark web threat intelligence, the contest requires participants to deploy an open-source attack tool called “Shai-Hulud.”

Hackers must submit their forum handles and provide proof of access to qualify.

Winners are determined by the weekly and monthly download counts of the packages they infect.

By allowing attackers to combine the download counts of multiple smaller packages, the scoring system actively encourages reckless, worm-like attacks that spread indiscriminately across the software ecosystem.

Hackers Launch Supply Chain Contest

While the threat to the supply chain is severe, the $1,000 reward is comically low for the damage being done.

Successful supply chain attacks expose highly valuable assets, including CI/CD secrets, cloud credentials, developer tokens, and enterprise source code.

BreachForums announced the contest alongside TeamPCP (source : socket)
BreachForums announced the contest alongside TeamPCP (source : socket)

To skilled cybercriminals, this level of access is worth vastly more than a thousand dollars. Security experts view this contest as a strategic public recruitment stunt.

It is designed to lure lower-tier hackers who are willing to burn valuable access simply for reputation and bragging rights on cybercrime forums.

By crowdsourcing these attacks, TeamPCP is effectively tricking novice hackers into doing the heavy lifting. At the same time, they reap the broader rewards of the compromised infrastructure.

TeamPCP has a well-documented history of targeting critical infrastructure, GitHub Actions, Docker images, and package managers like npm and PyPI.

They specialize in breaching tools that already hold privileged access, allowing them to harvest credentials for secondary attacks.

According to Socket Research, the group recently partnered with the ransomware syndicate Vect, with its credential theft operations already impacting AI firms, government cloud services, manufacturing, and enterprise technology.

By releasing Shai-Hulud as an open-source tool, TeamPCP is extending its access-broker pipeline outward.

A $1,000 prize might not attract elite threat actors. However, for overworked maintainers and enterprise security teams, the resulting wave of copycat attacks adds a dangerous new layer of risk to the open-source ecosystem.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackBreachHackerransomwareSecurityThreat

Share Article

David kimber

David kimber

David is a penetration tester turned security journalist with expertise in mobile security, IoT vulnerabilities, and exploit development. As an OSCP-certified security professional, David brings hands-on technical experience to his reporting on vulnerabilities and security research. His articles often feature detailed technical analysis of exploits and provide actionable defense recommendations. David maintains an active presence in the security research community and has contributed to multiple open-source security tools.

Previous Post

Critical Canon MailSuite Flaw Allows Remote Code Execution

Next Post

node-ipc npm Package Compromised in Supply Weekly Downloads

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
Hackers Compromise 170 npm Packages to Steal GitHub
May 14, 2026
Dell SupportAssist Updates Force Windows to BSOD Loop
May 14, 2026
Critical Exim Mailer Flaw Allows Remote Code Execution
May 14, 2026
Top Authors
Marcus Rodriguez
Marcus Rodriguez
Jennifer sherman
Jennifer sherman
Sarah simpson
Sarah simpson
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Detects Critical MongoDB CVE-

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us