www.darkreading.com 5 Oct 2026, 15:52 UTC

China-Linked Hackers Court US AI Experts Before Stealing Credentials

CyberSIXT Evidence Panel
Threat Actor
TA419

RESEARCHERS from Proofpoint have identified a China-aligned threat actor, TA419, impersonating US policymakers to conduct AI policy-focused cyber-espionage. In July 2026, TA419 established seemingly legitimate professional relationships with AI policy experts at US think tanks, universities and law firms, before launching credential-phishing campaigns designed to harvest credentials from artificial intelligence specialists.

The effort appears to be part of a broader Chinese espionage push aimed at understanding US AI policy and regulatory developments, with TA419 having conducted similar credential-phishing operations since at least April 2025 against targets in the US and Japan.

The campaign blends social engineering with a sophisticated phishing infrastructure. TA419 first builds credibility by posing as real contacts, such as a former White House Office of Science and Technology Policy official or a prominent economist, inviting targets to join fictitious advisory groups or contribute to Senate committees’ work on AI export controls. Only after establishing these relationships do the attackers deliver phishing content.

The technical stage uses a multistage redirection chain to a fake OneDrive AiTM credential‑phishing page run via a customised BitB Frameless BitB tool, placing the attacker between the victim and the legitimate authentication service. This can capture the victim’s credentials and, critically, an active session even if MFA is later completed, enabling potential reuse of the authenticated session.

Defenders are advised to treat unsolicited policy-related outreach with scepticism and to use phishing-resistant, origin-bound authentication such as passkeys. The article notes that the primary risk lies in the pretext of a legitimate professional relationship, not merely a suspicious link. Researchers anticipate further TA419 activity as AI policy work remains a high‑value target. 5 October 2026.

View full article

Article by CyberSIXT