Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others
Summary
Australian police arrested two people accused of being members of TeamPCP, a hacking group that compromised popular open source projects (widely-used software tools maintained by the community) to steal credentials and extort victims. The hackers targeted over 1,000 organizations by breaking into software supply chains (the systems and tools developers use to build and distribute software) and injecting malicious code that stole private keys and sensitive data from companies like OpenAI and Mercor.
Classification
Affected Vendors
Related Issues
CVE-2026-63086: text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compat
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
Original source: https://techcrunch.com/2026/08/27/australian-police-arrest-two-over-teampcp-hacks-targeting-mercor-openai-and-others/
First tracked: August 27, 2026 at 02:01 PM
Classified by LLM (prompt v3) · confidence: 85%