Washington — A Chinese hacking group identified by cybersecurity firm Proofpoint as “TA419” has been masquerading as artificial intelligence (AI) specialists to steal credentials from a small number of experts working on AI policy, regulation, and national strategy. The campaign, which began in 2025, targeted individuals at U.S. and Japanese think tanks, defense contractors, universities, and law firms.
Impersonation tactics
Proofpoint says the attackers sent emails that appeared to come from well‑known AI figures, including Lynne Parker, the former principal deputy director of the White House Office of Science and Technology Policy. The messages typically proposed collaborative AI projects or policy initiatives, then redirected recipients to fraudulent websites designed to harvest passwords.
One victim’s experience
Alex Engler, a former White House official who now leads the Penn Center on Media, Technology, and Democracy, told Reuters he received an invitation that seemed to come from Parker to join a new AI policy project. Engler sensed something was “slightly, nebulously off,” consulted colleagues, and recognized the email as a spoof.
Scope and motive
Proofpoint estimates the operation affected fewer than ten individuals across a handful of organizations. The firm believes the focus on AI policy experts indicates an intelligence interest in U.S. policymaking rather than pure technology theft. “The United States and China are in a competition around AI,” Parker said, noting that attempts to uncover AI policy plans are unsurprising.
Official response
The Chinese Embassy in Washington did not immediately respond to requests for comment. Beijing has repeatedly denied involvement in cyber‑espionage activities.
Broader implications
While the number of targets is limited, the episode underscores the growing strategic importance of AI policy and the lengths foreign actors will go to gain insight. Organizations handling sensitive AI research are urged to verify the authenticity of collaboration requests and to employ multi‑factor authentication on all accounts.
What to watch
Proofpoint’s findings highlight a need for heightened vigilance among AI researchers, especially those engaged in policy work that could influence national strategy. As the AI race intensifies, both public and private sectors must prioritize cybersecurity measures to protect the nation’s intellectual and strategic assets.
Original reporting: Appleton, WI News Feed (HLL/CB) — read the source article.