← Back to Feed
Analyzing TeamPCP’s Supply Chain Attacks: Checkmarx KICS and elementary-data in CI/CD Credential Theft
May 13, 2026 · Trend Micro · Severity: LOW
Our research examines the April 22 Checkmarx KICS and April 24 elementary-data incidents as part of a broader TeamPCP supply chain campaign. Across both cases, the actor abused trusted CI/CD and release workflows to steal credentials at scale.
Key Takeaways
- TeamPCP conducted supply chain attacks via the Checkmarx KICS and elementary-data incidents.
- The actor abused trusted CI/CD and release workflows to steal credentials at scale.
- The supply chain campaign targeted software development pipelines for credential theft.