TeamPCP Claims Sale of Mistral AI Repositories Amid Mini Shai-Hulud Attack

https://hackread.com/wp-content/uploads/2026/05/teampcp-mistral-ai-repositories-mini-shai-hulud-attack-2-1024x477.png

Key Points

  • A TeamPCP-linked forum account claims to be selling internal Mistral AI repositories.
  • The post advertises roughly 5GB of files linked to AI training and inference projects.
  • As of now, no public evidence confirms the authenticity of the alleged repositories.
  • The claims surfaced days after the Mini Shai-Hulud supply chain attacks on npm and PyPI.
  • TeamPCP has been previously linked to package poisoning attacks targeting AI infrastructure.

Only days after the Mini Shai-Hulud supply chain attack targeted npm and PyPI packages associated with French artificial intelligence company Mistral AI, a threat actor using the TeamPCP identity is now claiming to sell what appear to be internal company repositories and source code on a hacking forum.

The forum post, published under the TeamPCPname, advertises roughly 5GB of alleged internal repositories connected to both “mistralai” and “mistral-solutions.” The actor claims the archive contains around 450 repositories covering training systems, fine-tuning...

Copyright of this story solely belongs to hackread.com. To see the full text click HERE

Read more

https://www.bleepstatic.com/content/hl-images/2026/05/20/GitHub.jpg

GitHub confirms breach of ~3,800 repositories after one of its employees installed a malicious VS Code extension; TeamPCP claimed responsibility for the hack

Sponsor Posts Niantic Spatial: World models need real-world data — Scaniverse is the gateway to spatial services — self-serve and built for AI and robotics. Large-area 3D reconstruction from 360° cameras and precise localization, anywhere machines operate. Protecting your Cloud Applications Data — Backing up Office 365, Google Workspace, Dropbox & Salesforce data