{"data":{"id":"b2afbf06-56ef-451f-a559-00c8afec8594","title":"China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing","summary":"Proofpoint attributes a China-aligned, espionage-motivated group it calls TA419 to credential phishing campaigns against AI policy experts at U.S. think tanks, universities and legal organizations. The campaigns impersonate economists, AI policymakers and an Anthropic employee, and in February 2026 targeted a U.S. think tank expert with the subject line \"Request for Feedback on Military Integration of Claude.\" The attackers use a Frameless BitB technique and an OneDrive adversary-in-the-middle page, with a custom module that captures credentials and session cookies while relaying the sign-in to real Microsoft infrastructure.","solution":"To safeguard against this threat, organizations are recommended to enable phishing-resistant authentication methods like passkeys, and individual targets who are the focus of TA419 activity should treat unsolicited subject-matter outreach with caution, and verify their authenticity before proceeding further.","labels":["security","policy"],"sourceUrl":"https://thehackernews.com/2026/10/china-aligned-ta419-targets-us-ai.html","publishedAt":"2026-10-04T07:20:32.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"low","attackType":["other"],"issueType":"news","affectedPackages":null,"affectedPackageNames":null,"affectedVendors":["Anthropic","Microsoft"],"affectedVendorsRaw":["Claude","Microsoft OneDrive","Anthropic"],"classifierModel":"claude-haiku-5-5","classifierPromptVersion":"v4","summaryPromptVersion":"v2","headline":null,"headlinePromptVersion":null,"cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"epssCheckedAt":null,"kevDateAdded":null,"advisoryAliases":null,"affectedPackagesSource":null,"affectedPackagesCheckedAt":null,"patchAvailable":null,"disclosureDate":"2026-10-04T07:20:32.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality"],"aiComponentTargeted":null,"llmSpecific":false,"classifierConfidence":0.8,"researchCategory":null,"atlasIds":null}}