Company Updates

Proofpoint finds Chinese hackers impersonated Anthropic to steal US AI policy secrets

Share
Proofpoint finds Chinese hackers impersonated Anthropic to steal US AI policy secrets

A Chinese hacking group impersonated Anthropic researchers and former government officials to steal AI policy information from US experts, according to a report from cybersecurity firm Proofpoint. The group targeted think tanks, universities, and law firms with malware-laced documents.

TL;DR

  • Chinese hackers impersonated Anthropic staff and US officials to steal AI policy data from US think tanks, universities, and law firms.
  • The hacking group, TA419, sent malware-laced documents to gain access to cloud accounts after building trust through fake committees and reports.
  • The incident highlights the growing tension between the US and China in the AI arms race and the importance of securing AI policy information.

What happened

Proofpoint, a Silicon Valley cybersecurity firm, reported that a Chinese-aligned hacking group, TA419, impersonated AI industry professionals and former government officials to target US AI policy experts. The group created fake committees and reports to build trust and then sent malware-laced documents to gain access to cloud accounts.

One email, impersonating a senior Anthropic staffer, used the subject line "Request for Feedback on Military Integration of Claude" to target someone working at a think tank. The group also impersonated Lynne Edwards Parker, who held the position of Principal Deputy Director of the White House Office of Science and Technology Policy under Joe Biden.

Proofpoint is confident that the hacking cohort is a "Chinese government-aligned threat actor based on targeting consistently in line with Chinese government interests, observed infrastructure and technical artifacts, and corroboration from industry partners," said Mark Kelly, a Proofpoint researcher.

Why it matters

This incident underscores the growing tension between the US and China in the AI arms race. The US has been calling for regulations on AI development, while China has been actively targeting AI policy experts to gain an advantage.

The incident also highlights the importance of securing AI policy information. As the US and China vie for dominance in AI, the theft of policy information could give one country an unfair advantage.

For developers and startups, this incident serves as a reminder of the importance of cybersecurity. As AI becomes more integrated into various industries, the risk of cyberattacks increases, and companies must take steps to protect their data.

Key facts

  • The hacking group, TA419, impersonated AI industry professionals and former government officials to target US AI policy experts.
  • The group created fake committees and reports to build trust and then sent malware-laced documents to gain access to cloud accounts.
  • One email impersonated a senior Anthropic staffer and used the subject line "Request for Feedback on Military Integration of Claude" to target someone working at a think tank.
  • The group also impersonated Lynne Edwards Parker, who held the position of Principal Deputy Director of the White House Office of Science and Technology Policy under Joe Biden.
  • Proofpoint is confident that the hacking cohort is a "Chinese government-aligned threat actor based on targeting consistently in line with Chinese government interests, observed infrastructure and technical artifacts, and corroboration from industry partners," said Mark Kelly, a Proofpoint researcher.
  • The incident highlights the growing tension between the US and China in the AI arms race.
  • The incident also underscores the importance of securing AI policy information.
  • For developers and startups, this incident serves as a reminder of the importance of cybersecurity.

Context

The US has been calling for regulations on AI development, with leading AI executives like Anthropic's Dario Amodei advocating for government intervention. However, the White House and industry figures like Meta's Mark Zuckerberg and Nvidia's Jensen Huang have pushed back against calls to regulate.

This week, the administration hosted a summit where AI executives signed a document described by President Donald Trump as a "morally-binding" agreement that would allow for "tremendous self-policing." One argument often spouted by the anti-regulation bunch, the president included, is that the US can't risk ceding its lead in the international AI arms race to China.

Proofpoint opined that TA419 "will likely continue targeting think tanks and policy experts working on technologies, and in geographies, of particular interest to the Chinese government." "These campaigns will likely also continue spoofing the identities of real subject-matter experts," the security firm added.

Topics

Join the discussion

Have a take on this story? Weigh in with our community on Facebook.

💬 Discuss on Facebook →