Live webinar

TeamPCP and the Supply Chain: Defending Against the Next Generation of Supply Chain Malware

Virtual event
Mar 31, 2026 3:30 PM

The software supply chain is no longer a theoretical risk, it is an active battleground. Recent threat actor TeamPCP have demonstrated how easily "trusted" third-party integrations and automated workflows can be weaponized to exfiltrate secrets and establish persistence within cloud environments. When your security scanners become the attack vector, traditional "shift-left" strategies aren't enough.

In this webinar we'll break down the mechanics of modern CI/CD hijacking. We will deconstruct the TeamPCP attack lifecycle: from malicious "imposter" commits and tag hijacking to advanced exfiltration techniques like dumping runner memory and creating "dead-drop" repositories. Most importantly, we’ll focus on what you can do about it.


Join us to learn how to secure your software supply chain, reduce risk across your CI/CD pipelines, and implement practical defenses that help you detect and prevent these types of attacks before they spread. This is a great opportunity to ask your questions to the experts.

Register today

For information about how Wiz handles your personal data, please see our Privacy Policy.

Speakers

  • Rami McCarthy

    Principal Security Researcher at Wiz

  • Yuval Dan

    Incident Response Expert