# Google says undercover analyst tracked TeamPCP supply-chain campaign

_Published Sunday, September 20, 2026 at 12:07 PM EDT · Security · Latest · Tier 2 — Notable_

![A concept illustration that overlays biometric fingerprints, computer code text, and a cargo shipping port with stacked containers. — Primary](https://cdn.arstechnica.net/wp-content/uploads/2026/09/GettyImages-2216350484-2560x1440.jpg)

Google's threat intelligence group said it had an undercover Mandiant analyst inside TeamPCP during the group's supply-chain hacking campaign. Google said the access helped it monitor the group, warn breach targets and disrupt exploitation attempts. The group allegedly tainted hundreds of open-source programs, stole developer accounts and breached more than a thousand companies before two alleged members were arrested in Australia last month.

## Sources

- [Ars Technica](https://arstechnica.com/security/2026/09/an-undercover-google-analyst-infiltrated-a-notorious-supply-chain-hacking-gang/)

---
Canonical: https://techandbusiness.org/newswire/PKyMFuMlEq7oa_hUfeNEfa
Published: 2026-09-20T16:07:31.482Z
Story chronology: 2026-09-20T11:07:00.000Z
Retrieved: 2026-09-20T17:57:59.094Z
Publisher: Tech & Business (techandbusiness.org)
