Two Australian men were charged for spreading malware with hacker group TeamPCP, affecting over 1,000 global organizations.
Two Australian men have been formally arrested and charged in court for allegedly running a major global internet hacking syndicate known as TeamPCP.
Police officers charged 23 year-old Louis Michael Gaebler and 21 year old Ruben Ian Thomson with fourteen serious computer crime offenses after seizing phones, computers, and digital file equipment from their homes.
Investigators say the men secretly broke into trusted computer software channels to plant hidden spy programs inside automated computer updates.
Once installed, the bad software silently stole secret user passwords, private company files, and computer keys from more than 1,000 businesses, government offices, and global technology groups.
The major law enforcement action was officially carried out in Perth, Western Australia, where police teams executed search warrants on properties located in Cottesloe, Hamilton Hill, and Mandurah before bringing the suspects to court on August 27, 2026.
The successful arrest operation was managed jointly by the Australian Federal Police, local Western Australian police officers, and international investigators from the United States Federal Bureau of Investigation.
By tracing secret cryptocurrency payments and online chat account names back to physical home addresses, police forces were able to identify and shut down the key leaders operating the global hacking gang.
The main reason these online attacks caused so much damage is that the hackers targeted foundational software tools that developers use to write code and scan for security flaws.
Instead of attacking individual offices one by one, TeamPCP poisoned widely used open-source computer scanners like Trivy, Checkmarx KICS, and artificial intelligence software LiteLLM.
When normal businesses downloaded routine updates for these tools, the hidden malware slipped past antivirus barriers.
The bad software then copied private passwords and sent over 300 gigabytes of secret trade records back to the hackers without anyone noticing.
See Also: Integrity360 Buys CyberIAM to Better Protect Online Accounts and Internet Users
Explaining how dangerous the international hacking operation was to global technology systems, FBI Cyber Division Assistant Director Brett E. Leatherman confirmed in an official statement that the two men are allegedly members of TeamPCP, whose malicious code “potentially compromised more than a thousand organizations worldwide”.
Warning that the sneaky attack poisoned trusted developer tools to steal private information across many digital ecosystems, police officials noted in joint announcements that the computer code “enabled the theft of more than 500,000 credentials, and the exfiltration of at least 300 gigabytes of data”.
Confirming that the dangerous malware posed a severe threat to open source software libraries used across the world, cybersecurity research analysts at Socket stated that “TeamPCP is escalating a coordinated campaign targeting security tools and open source developer infrastructure”.
By tracking down and charging the alleged members of TeamPCP, police officers and global intelligence agencies have delivered a strong warning to cybercriminals.
Stopping software supply chain attacks protects everyday business networks, keeps digital tools safe from hidden viruses, and ensures that online systems stay trustworthy for everyone.

