← Back to Feed
Vect and TeamPCP partner for ransomware campaigns
July 2, 2026 · Sophos Threat Research · Severity: CRITICAL
Sophos Threat Research reports that Vect and TeamPCP have partnered for ransomware campaigns, using credentials harvested through supply chain compromises to enable large-scale deployment. The collaboration combines access brokerage with ransomware operations, creating a more efficient attack pipeline. Organizations should monitor supply chain security to prevent credential theft.
Key Takeaways
- Vect and TeamPCP partner for ransomware campaigns — Credentials harvested through supply chain compromises enable large‑scale ransomware...
- Classified as critical severity, this development demands immediate attention from security teams.
- Ransomware continues to be a top threat; ensure offline backups and incident response plans are in place.
- AI and LLM usage introduces new attack surfaces, including hallucinated domains and prompt injection risks.
- Credential theft remains a primary initial-access vector; enforce MFA and monitor for anomalous authentication patterns.