MalwareMay 7, 2026
What PCPJack does after it wins the turf war: ๐ Steals cloud credentials across AWS, Kubernetes,...
PCPJack malware steals cloud credentials from AWS, Kubernetes, Docker, and 30+ services.
Summary
PCPJack is a sophisticated malware that wins turf wars on compromised systems and then pivots to steal cloud credentials across multiple major platforms including AWS, Kubernetes, Docker, Slack, GitHub, and Stripe. The malware uses Common Crawl parquet dataโa legitimate web archive nonprofit's datasetsโas a target list for external propagation. This represents a multi-vector attack combining credential theft with supply-chain abuse of public infrastructure.
Indicators of Compromise
- malware โ PCPJack
Entities
AWS (product)Kubernetes (product)Docker (product)Slack (product)GitHub (product)