China-Linked APT41 Hackers Target U.S. Trade Officials Amid 2025 Negotiations
Briefly

China-Linked APT41 Hackers Target U.S. Trade Officials Amid 2025 Negotiations
"The committee noted that suspected threat actors from China impersonated Republican Party Congressman John Robert Moolenaar in phishing emails sent to trusted counterparts with an aim to deceive them and trick them into opening files and links that would grant them unauthorized access to their systems and sensitive information without their knowledge. The end goal of the attacks was to steal valuable data by abusing software and cloud services to cover up traces of their activity, a tactic often adopted by state-sponsored hackers to evade detection."
""This is another example of China's offensive cyber operations designed to steal American strategy and leverage it against Congress, the Administration, and the American people," said Moolenaar, who is also the Chairman of the House Select Committee on the Communist Party of China (CCP). "We will not be intimidated, and we will continue our work to keep America safe.""
The House Select Committee on China issued an advisory warning of ongoing, highly targeted cyber espionage campaigns linked to the People's Republic of China during contentious U.S.-China trade talks. The campaigns aimed to compromise organizations and individuals involved in U.S.-China trade policy and diplomacy, including government agencies, business organizations, D.C. law firms, think tanks, and at least one foreign government. Suspected Chinese threat actors impersonated Congressman John Robert Moolenaar in phishing emails to trick recipients into opening files and links that allowed unauthorized access. Attackers abused software and cloud services to hide activity, steal valuable data, and maintain entrenched access. Moolenaar described the operations as offensive cyber activity designed to steal American strategy and pledged continued efforts to protect the nation. The advisory followed a Wall Street Journal report about an allegedly malicious email that contained a draft sanctions bill and deployed malware.
Read at The Hacker News
Unable to calculate read time
[
|
]