Threat Actor
PCPJack
- First Reported
- Jun 3, 2026
- Latest Reported
- Jun 3, 2026
Reported Context (1)
- Described by SentinelOne as a presumed former TeamPCP operator. Its C2 address overlaps with every recovered XSync deployment script, although the article says this does not prove operational continuity. PCPJack Used 230 Cloud Linux Servers in a Hidden SMTP Relay Network
CVE (1)
People (1)
Threat Actors (1)
MITRE ATT&CK (12)
Vendors (3)
Products (4)
Tools (5)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.