Santos, J. and Navato, J.R. (2026, May 13). Analyzing TeamPCP’s Supply Chain Attacks: Checkmarx KICS and elementary-data in CI/CD Credential Theft. Retrieved July 16, 2026.
Not cited by any technique.
None recorded.
| Technique | Used by | Procedure example |
|---|---|---|
| T1008 Fallback Channels |
MalwareMini Shai-Hulud | Mini Shai-Hulud has established Fallback Channels to exfiltrate data to Github when other configured infrastructure is found to be unreachable. |
| T1016 System Network Configuration Discovery |
MalwareMini Shai-Hulud | Mini Shai-Hulud has discovered network configuration through the use of system commands to include `ip addr`, and `ip route`. |
| T1027.013 Encrypted/Encoded File |
MalwareMini Shai-Hulud | Mini Shai-Hulud has used a hybrid AES-256-GCM and RSA OAEP-SHA256 encryption to archive gathered data. Mini Shai-Hulud has also utilized custom MD5-keystream XOR cipher to encrypt data. Mini Shai-Hulud has also been deployed via an obfuscated script using Bun JavaScript runtime. |
| T1033 System Owner/User Discovery |
MalwareMini Shai-Hulud | Mini Shai-Hulud has leveraged commands such as `whoami` to identify the system owner. |
| T1041 Exfiltration Over C2 Channel |
MalwareMini Shai-Hulud | Mini Shai-Hulud has exfiltrated encrypted archives over C2 domains. |
| T1059.006 Python |
GroupTeamPCP | TeamPCP has poisoned PyPi packages with malicious code and has used a 13 file modular Python framework for data collection. |
| T1059.007 JavaScript |
GroupTeamPCP | TeamPCP has used the JavaScript runtime for malware delivery and injected malicious JavaScript into OpenVSX extensions. |
| T1059.007 JavaScript |
MalwareMini Shai-Hulud | Mini Shai-Hulud has leveraged JavaScript runtime to execute malicious scripts. |
| T1070.004 File Deletion |
MalwareMini Shai-Hulud | Mini Shai-Hulud has deleted all artifacts to include gathered credential archives to reduce disk persistence and detection. |
| T1071.001 Web Protocols |
MalwareMini Shai-Hulud | Mini Shai-Hulud has has exfiltrated data through the use of HTTPS POST requests to C2 domains. |
| T1078.004 Cloud Accounts |
GroupTeamPCP | TeamPCP has used compromised credentials for GitHub and software package repositories, including privileged service accounts, to inject malicious code into CI/CD pipelines. |
| T1078.004 Cloud Accounts |
MalwareMini Shai-Hulud | Mini Shai-Hulud has used compromised accounts for Docker Hub and GitHub to publish malicious software packages. |
| T1082 System Information Discovery |
MalwareMini Shai-Hulud | Mini Shai-Hulud has gathered system information of victim hosts through the use of common discovery commands to include `hostname`, `uname-a` and `printenv`. Mini Shai-Hulud has also conducted system checks of the victim device to include enumerating the system type and the number of CPUs operating on victim host. |
| T1102.001 Dead Drop Resolver |
MalwareMini Shai-Hulud | Mini Shai-Hulud has leveraged GitHub commit-search API to recover fallback C2 domains stored in auto-created public Github repositories. |
| T1140 Deobfuscate/Decode Files or Information |
MalwareMini Shai-Hulud | Mini Shai-Hulud has the ability to decrypt obfuscated payloads. |
| T1176.002 IDE Extensions |
GroupTeamPCP | TeamPCP has compromised VS Code and Open VSX IDE extensions. |
| T1195.001 Compromise Software Dependencies and Development Tools |
GroupTeamPCP | TeamPCP has conducted coordinated supply chain attacks targeting open-source developer infrastructure including the NPM, VS Code, Docker, and PyPi ecosystems to compromise multiple software packages. Aikido TeamPCP Telnyx MAR 2026Aqua Security Trivy Compromise MAR 2026FBI TeamPCP JUL 2026Flashpoint Mini Shai-Hulud MAY 2026Google AI Threat Tracker MAY 2026Hunt.io TeamPCP Toolkit MAY 2026Palo Alto TeamPCP MAR 2026Phoenix TeamPCP 20 MAY 2026Trend Micro TeamPCP MAY 2026Wiz Mini Shai-Hulud MAY 2026Wiz TeamPCP KICS MAR 2026Wiz Trivy Compromise MAR 2026 |
| T1195.001 Compromise Software Dependencies and Development Tools |
MalwareMini Shai-Hulud | Mini Shai-Hulud has published itself on compromised victim code repositories to propagate malicious versions of packages to other victims. |
| T1528 Steal Application Access Token |
GroupTeamPCP | TeamPCP has used malware to steal access tokens from targeted cloud and developer environments. |
| T1528 Steal Application Access Token |
MalwareMini Shai-Hulud | Mini Shai-Hulud has stolen application access tokens and other tokens to include those associated with CI/CD. |
| T1546.018 Python Startup Hooks |
MalwareMini Shai-Hulud | Mini Shai-Hulud has utilized Python startup hooks to include the .pth import mechanism for execution. |
| T1552.001 Credentials In Files |
MalwareMini Shai-Hulud | Mini Shai-Hulud has collected credentials stored within configuration files. Mini Shai-Hulud has also gathered credentials from files stored in common credential file paths to include targeting git-credentials, azureProfile.json, and application_default_credentials.json. |
| T1552.004 Private Keys |
MalwareMini Shai-Hulud | Mini Shai-Hulud has gathered unsecured credentials to include SSH private keys within .ssh. |
| T1553.002 Code Signing |
GroupTeamPCP | TeamPCP has compromised legitimate software release workflows resulting in malicious packages receiving legitimate project cryptographic signing. |
| T1555.006 Cloud Secrets Management Stores |
MalwareMini Shai-Hulud | Mini Shai-Hulud has captured credentials stored in cloud secret stores. |
| T1559 Inter-Process Communication |
MalwareMini Shai-Hulud | Mini Shai-Hulud has executed via the use of `subprocess.run` and fed input through standard input `stdin` which acted as a pipe to send data from the parent process and the child process `sys.executable` within memory. |
| T1560.001 Archive via Utility |
MalwareMini Shai-Hulud | Mini Shai-Hulud has compressed collected credentials and data within tar archive files prior to exfiltration. |
| T1567.001 Exfiltration to Code Repository |
MalwareMini Shai-Hulud | Mini Shai-Hulud has exfiltrated data through the use of the victim’s own GitHub repository by creating a new public repository using a unique naming convention from a curated list of key words or themes. |
| T1583.001 Domains |
GroupTeamPCP | TeamPCP has registered domains resembling legitimate victim sites such as scan.aquasecurtiy[.]org, checkmarx[.]zone, and git-tanstack[.]com to mask C2 and exfiltration endpoints. TeamPCP has also set up a dark web leak site to post stolen data. |
| T1583.006 Web Services |
GroupTeamPCP | TeamPCP has set up Clouflare Tunnels for malware C2. TeamPCP has also used the session messenger network for decentralized, encrypted exfiltration via *.getsession[.]org to recipient ID `05f9e609d79eed391015e11380dee4b5c9ead0b6e2e7f0134e6e51767a87323026`. |
| T1585.001 Social Media Accounts |
GroupTeamPCP | TeamPCP has used its own Telegram channel and X accounts @pcpcats and @xploitrsturtle2 for external communications. |
| T1609 Container Administration Command |
MalwareMini Shai-Hulud | Mini Shai-Hulud has utilized container administration commands to gather details of compromised hosts and gather credentials to include Kubernetes command-line utilities `kubectl get secrets`. |
| T1657 Financial Theft |
GroupTeamPCP | TeamPCP has engaged in cryptocurrency mining and theft. TeamPCP has also partnered with ransomware and data theft extortion groups, sold leaked code, and crowdsourced supply chain compromises by open-sourcing their Mini Shai-Hulud malware. |
| T1677 Poisoned Pipeline Execution |
GroupTeamPCP | TeamPCP has compromised trusted CI/CD pipelines by injecting credential-stealing payloads into legitimate workflows and software packages including open-source security tools Trivy and KICS, and AI gateway LiteLLM. Aikido TeamPCP Telnyx MAR 2026Aqua Security Blog Trivy Compromise APR 2026Aqua Security Trivy Compromise MAR 2026FBI TeamPCP JUL 2026Flashpoint Mini Shai-Hulud MAY 2026Google AI Threat Tracker MAY 2026Hunt.io TeamPCP Toolkit MAY 2026Palo Alto TeamPCP MAR 2026Phoenix TeamPCP 20 MAY 2026Sysdig TeamPCP MAR 2026Trend Micro TeamPCP MAY 2026Wiz Mini Shai-Hulud MAY 2026Wiz TeamPCP KICS MAR 2026Wiz Trivy Compromise MAR 2026 |
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.