**Title: Chinese Hackers Impersonate AI Experts to Target U.S. Policy Makers**
**Published: October 1, 2026**
A new report from cybersecurity firm Proofpoint reveals that a Chinese hacking group has been impersonating artificial intelligence (AI) experts in the United States, including a former government official, to target U.S. policy minds. This alarming trend highlights the ongoing cybersecurity threats faced by individuals and organizations involved in AI policy and technology.
The hacking group, known as TA419, has been active since April 2025 and has recently intensified its efforts. In July, the group targeted various U.S. policy experts by masquerading as well-known figures in the AI field, including Lynne Edwards Parker, who previously served as the principal deputy director of the White House Office of Science and Technology Policy.
According to the report, the hackers employed a method of sending seemingly innocuous emails designed to engage their targets. These emails often contained requests to join an "AI Policy Advisory Committee." Once the recipients responded, they were directed to a counterfeit login page that aimed to capture their credentials. This technique exploits the trust that individuals place in established figures within the AI community, making it easier for the hackers to deceive their victims.
The report indicates that the targets included policy experts from think tanks, defense contractors, universities, and law firms in both the United States and Japan. The sophistication of the attack is underscored by the use of a technique that creates a fake browser pop-up window within a legitimate webpage. This tactic mimics an authentic-looking sign-in prompt, complicating the victim's ability to recognize that they are providing sensitive information to hackers.
While Proofpoint did not disclose the names of all the individuals affected by the cyberattacks, Reuters confirmed that Alex Engler, a former White House official and current head of the Penn Center on Media, Technology, and Democracy, was among the targets. Engler reported receiving one of the impersonating emails but, upon consulting with industry colleagues, realized it was a phishing attempt.
This is not the first time TA419 has engaged in such tactics. In February, the group impersonated a "prominent" employee from Anthropic, a well-known AI research organization, in efforts to reach AI policy experts. The ongoing nature of these attacks suggests that the group is likely to continue targeting think tanks and policy experts, leveraging the identities of real-world professionals to facilitate their operations.
The implications of such cyberattacks are significant, as they not only threaten the security of individual experts but also pose risks to broader national security and policy-making processes. The infiltration of sensitive discussions and decisions regarding AI policy could have far-reaching consequences, especially as AI technology continues to evolve and influence various sectors.
As the cybersecurity landscape becomes increasingly complex, experts are urging organizations and individuals to remain vigilant against such impersonation tactics. Awareness and education about the signs of phishing attempts are crucial in mitigating the risks associated with these sophisticated cyber threats.
The report from Proofpoint serves as a reminder of the persistent challenges posed by cybercriminals and the need for enhanced security measures to protect sensitive information and maintain the integrity of policy discussions in the rapidly advancing field of artificial intelligence.