Security News > 2022 > March > Chinese hackers attempted phishing on emails affiliated with US government

Chinese hackers attempted phishing on emails affiliated with US government.
According to Google's Threat Analysis Group, multiple Gmail users affiliated with the U.S. government were alerted to an attempted phishing attack by a Chinese-backed hacking group noted as APT31 in February.
Fortunately for government officials, the attempted attack was unsuccessful as all of the emails containing phishing links were automatically marked as spam and filtered by Gmail.
"We don't have any evidence to suggest that this campaign was related to the current war in Ukraine. In February, we detected an APT31 phishing campaign targeting high profile Gmail users affiliated with the U.S. government. 100% of these emails were automatically classified as spam and blocked by Gmail."
"By phishing humans, they look at it as the more accessible way into the systems and infrastructure. Gaining access through a government employee's email address is easy to bypass the technology and gain entry into the government infrastructure and systems."
Also See Share: Chinese hackers attempted phishing on emails affiliated with US government.
News URL
Related news
- Chinese hackers breach US local governments using Cityworks zero-day (source)
- New Morphing Meerkat Phishing Kit Mimics 114 Brands Using Victims’ DNS Email Records (source)
- Chinese FamousSparrow hackers deploy upgraded malware in attacks (source)
- PoisonSeed phishing campaign behind emails with wallet seed phrases (source)
- Phishing Campaigns Use Real-Time Checks to Validate Victim Emails Before Credential Theft (source)
- Chinese snoops use stealth RAT to backdoor US orgs – still active last week (source)
- Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell Tool (source)
- Chinese hackers target Russian govt with upgraded RAT malware (source)
- Phishing emails delivering infostealers surge 84% (source)
- DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack (source)