search
TA419
Trends
- 1China-linked TA419 targets U.S. AI policy experts with phishing●🤖 China-nexus TA419 runs AitM credential phishing against U.S. AI policy experts, impersonating economists, policymakers
Proofpoint reports that the China-nexus threat group TA419 is running adversary-in-the-middle credential phishing against U.S. AI policy experts. The attackers impersonate economists, policymakers and an Anthropic employee, using a lure titled "Request for Feedback on Military Integration of Claude". The attack chain ends on an OneDrive page using a frameless browser-in-the-browser technique to harvest credentials.
- 2China-Linked TA419 Hacks US AI Policy Experts●China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing
TA419, a hacking group aligned with China, is targeting U.S. experts on artificial intelligence policy using Microsoft adversary-in-the-middle phishing techniques, according to The Hacker News. The attacks reportedly aim to steal credentials by intercepting authentication flows, raising concerns about foreign espionage aimed at shaping or tracking American AI policymaking.
- 3TA419 phishing campaign targeted AI-policy specialists●Proofpoint says TA419 impersonated AI-policy figures and used a real-time Microsoft 365 phishing proxy against fewer tha
Security firm Proofpoint reports that the threat group TA419 impersonated prominent AI-policy figures and used a real-time Microsoft 365 phishing proxy to steal authenticated login sessions. The highly targeted campaign hit fewer than ten specialists. Researchers say it shows how attackers can capture live sessions, though successful compromises and government attribution remain unclear.