A China-aligned group called TA419 targeted U.S. AI policy experts with phishing emails impersonating officials, economists, and an Anthropic employee to steal Microsoft account credentials and browser sessions. Proofpoint said the campaign focused on people at think tanks, universities, and law firms amid escalating U.S.-China competition over AI policy and technology. #TA419 #Anthropic #LynneParker #HeidiCreboRediker #MicrosoftOneDrive #FramelessBitB
Keypoints
- TA419 used phishing emails to target U.S. artificial intelligence policy experts.
- The group impersonated Lynne Parker, Heidi Crebo-Rediker, and an Anthropic employee.
- Victims were lured to a fake Microsoft OneDrive sign-in page to capture credentials and sessions.
- Proofpoint said the attackers used a modified version of the Frameless BitB phishing tool.
- The campaign targeted people tied to think tanks, universities, law firms, and defense-related institutions.
Read More: https://cyberscoop.com/china-cyber-espionage-ta419-phishing-us-ai-policy-experts/