Threat intel firm Flare has published its own investigation on how its researchers tracked down the real identities of TeamPCP members, who were arrested by Australian police last week
https://flare.io/learn/resources/blog/teampcp-software-supply-chain-attacks