← Back to Feed

Vect and TeamPCP partner for ransomware campaigns

July 2, 2026 · Sophos Threat Research · Severity: CRITICAL

Sophos Threat Research reports that Vect and TeamPCP have partnered for ransomware campaigns, using credentials harvested through supply chain compromises to enable large-scale deployment. The collaboration combines access brokerage with ransomware operations, creating a more efficient attack pipeline. Organizations should monitor supply chain security to prevent credential theft.

Key Takeaways

  • Vect and TeamPCP partner for ransomware campaigns — Credentials harvested through supply chain compromises enable large‑scale ransomware...
  • Classified as critical severity, this development demands immediate attention from security teams.
  • Ransomware continues to be a top threat; ensure offline backups and incident response plans are in place.
  • AI and LLM usage introduces new attack surfaces, including hallucinated domains and prompt injection risks.
  • Credential theft remains a primary initial-access vector; enforce MFA and monitor for anomalous authentication patterns.
☕ Buy a Coffee