PERTH, Australia — Law enforcement agencies across continents have struck a decisive blow against one of the most prolific and disruptive cybercrime syndicates in recent memory. In a joint operation coordinated by the Australian Federal Police (AFP), the U.S. Federal Bureau of Investigation (FBI), and Western Australia Police (WAPF), authorities arrested two men in Western Australia believed to be central figures behind TeamPCP.
The prolific data extortion and software supply chain group has been blamed for orchestrating the longest-running, automated software supply chain exploitation campaign in internet history.

According to a formal statement released by the AFP, the two suspects—aged 21 and 23—were taken into custody during morning raids in Western Australia. They face a combined total of 14 cybercrime offenses, stemming from an alleged global conspiracy that weaponized malicious open-source software to compromise thousands of corporate environments and extort businesses worldwide.
While Australian authorities initially withheld the names of the accused, local media and investigative journalism have identified the 21-year-old alleged mastermind as Ruben Ian Thomson of Cottesloe, a beachfront suburb of Perth. The second suspect, a 23-year-old man identified as Michael Gaebler, was arrested alongside him. Both men appeared in the Perth Magistrates Court, where Thomson was formally denied bail.

Main Facts: Anatomy of a Global Supply Chain Heist
TeamPCP first burst onto the threat-intelligence radar in late 2025. Unlike traditional ransomware gangs that rely on standard phishing or exposed Remote Desktop Protocol (RDP) gateways, TeamPCP perfected an insidious method of cyclical exploitation targeting the very foundations of the global software development ecosystem.
The group’s core mechanism involved compromising trusted software repositories on public platforms like GitHub and NPM. By phishing or stealing developer credentials, TeamPCP injected malicious payloads into widely used open-source libraries. When other developers downloaded these updates, the malware infected their machines, harvesting credentials that allowed the hackers to compromise even more downstream repositories.

Their most infamous weapon was a self-propagating worm dubbed Shai-Hulud. In March, TeamPCP executed a high-profile strike against LiteLLM, an open-source AI gateway connecting applications to over 100 large language models. Security firm CloudSEK later revealed that this single attack harvested cloud service API keys and operational secrets from more than 2,500 organizations, including major global technology companies.
By May, the group claimed responsibility for breaching at least 3,800 code repositories at Microsoft-owned GitHub after a developer inadvertently installed a compromised extension.

Security experts emphasize that TeamPCP was not a conventional, hierarchical criminal enterprise with a single boss. Instead, researchers from the Google Threat Intelligence Group describe it as a loosely knit "peer community" of skilled threat actors, intersecting with various data extortion brokers and cybercriminal underground forums.
Chronology of the Operation and Undoing
The unraveling of TeamPCP reads like a masterclass in digital forensics combined with monumental operational security (opsec) failures by the group’s leadership.

The Rise of the Cybercats
Earlier in 2025, an accomplished security researcher and exploit developer known by the handle @kernelstub—identified as George Prepakis—launched a Matrix chat server dubbed "Cybercats." Over the subsequent months, this server functioned as the daily operational headquarters for TeamPCP and allied cybercrime entities, including data brokers tied to prominent automotive leaks (such as BMW, Audi, and Toyota) and extortion groups targeting pharmaceutical giants.
Within the Cybercats chat, core leaders operated under various pseudonyms. Notably, the group’s primary spokesperson and technical lead used handles such as EllisD25, BulkDMT, Express, and Deadcatx3.

The Trail of Digital Breadcrumbs
Despite operating in the shadows, the TeamPCP leader left an extensive trail of digital footprints that allowed security researchers and investigators to pierce his anonymity:
- Email Reuse: Historical records analyzed by identity-threat protection firm SpyCloud and security intelligence provider Intel 471 linked forum registration emails like
[email protected]and[email protected]to accounts dating back to 2018 on forums like Raidforums, Nulled, and Breachforums. - Geographical Clues: The leader’s alter ego, Persy_PCP, frequently complained on Telegram about living in a country where "farmers’ land" was threatened—a clear reference to South Africa, where Thomson’s family had historical roots before relocating to Western Australia.
- The Corporate Mismatch: In a supreme irony for an operation relying on "opsec," Ruben Thomson incorporated several businesses in Australia utilizing variants of his cybercrime monikers, including Secure Computing Solutions, Tensor Industries, and OPSEC Express.
- The HackerOne Blunder: In June 2025, an account registered under the real name Ruben Thomson on the bug-bounty platform HackerOne used the username Deadcatx3—an alias already flagged by multiple threat-intelligence firms as belonging to a core TeamPCP operator.
Supporting Data and Technical Insights
The scale of TeamPCP’s disruption is underscored by data collected from prominent threat intelligence firms:

- Ecosystem Penetration: According to Flashpoint and Dataminr, TeamPCP went as far as hosting a hacking contest in May, offering Monero (XMR) cryptocurrency prizes to participants who could use the Shai-Hulud 3.0 worm to compromise the highest-downloaded open-source packages, effectively crowdsourcing supply-chain infiltration.
- The Human Element: In interviews with investigative journalists prior to his arrest, the leader—who went by "Ellis"—admitted that his venture into black-hat hacking stemmed from a mix of financial desperation, brilliant technical curiosity, and severe struggles with substance abuse, including methamphetamine and synthetic hallucinogens. He claimed to have earned roughly $20,000 through his exploits.
- Arrest Details: On Wednesday morning, AFP and state police executed simultaneous warrants, seizing digital devices and formally charging the two Western Australia residents. Court filings confirmed that Ruben Ian Thomson was remanded without bail, while his co-accused, Michael Gaebler (suspected to be the Telegram user
@pcpcasper), also appeared in court. Both are scheduled to return before the Perth Magistrates Court on September 18.
Implications: A Permanent Shift in Software Supply Chain Security
The dismantling of TeamPCP marks a watershed moment for the cybersecurity industry. Charlie Eriksen, a security researcher at Aikido Security, noted that TeamPCP represents a new breed of threat actor: neither state-sponsored nor strictly financially motivated, but driven by a volatile mix of disruption, ideology, and technical notoriety.
Eriksen pointed out a troubling modern trend: the lowering barrier to entry caused by Large Language Models (LLMs). While traditional high-level attacks required years of specialized research and troubleshooting to operationalize, AI tools have compressed that gap. This enables threat actors to execute complex, wide-scale campaigns without possessing the rigorous discipline traditionally required by professional criminal syndicates. Consequently, they leave behind abundant forensic evidence—making them ultimately catchable, but profoundly destructive while active.

Ironically, security analysts argue that TeamPCP may have inadvertently cured some of the structural vulnerabilities they exploited. In response to the Shai-Hulud attacks and compromised GitHub environments, Microsoft and other major software repositories instituted strict new safeguards. In late July, GitHub rolled out a mandatory three-day "cooldown" period for Dependabot updates, designed to give maintainers time to intercept poisoned code before it propagates downstream. Similar measures have since been adopted across Python and JavaScript ecosystems.
"TeamPCP achieved in a matter of months what the supply chain security community had been advocating for years," Eriksen observed. "They humiliated major tech giants into taking software trust models seriously."

As the legal proceedings against Thomson and Gaebler advance in Perth, the cyber security community watches closely, viewing the downfall of TeamPCP as both a triumph for international law enforcement and a stark warning about the fragile underpinnings of the modern digital supply chain.

