Back to Feed
MalwareMay 7, 2026

What PCPJack does after it wins the turf war: ๐Ÿ”‘ Steals cloud credentials across AWS, Kubernetes,...

PCPJack malware steals cloud credentials from AWS, Kubernetes, Docker, and 30+ services.

Summary

PCPJack is a sophisticated malware that wins turf wars on compromised systems and then pivots to steal cloud credentials across multiple major platforms including AWS, Kubernetes, Docker, Slack, GitHub, and Stripe. The malware uses Common Crawl parquet dataโ€”a legitimate web archive nonprofit's datasetsโ€”as a target list for external propagation. This represents a multi-vector attack combining credential theft with supply-chain abuse of public infrastructure.

Indicators of Compromise

  • malware โ€” PCPJack

Entities

AWS (product)Kubernetes (product)Docker (product)Slack (product)GitHub (product)