뉴스로 돌아가기
보안AI Understanding 브리핑

연구원들은 중국 해커들이 AI 기업과 아시아 정부를 표적으로 삼았다고 보고했습니다.

Proofpoint와 Cisco Talos는 중국 정부와 연계된 그룹이 AI 테마의 미끼를 사용하여 전문가를 피싱하고 아시아 정부 네트워크에 백도어를 배포한 별도의 캠페인을 자세히 설명했습니다.

4 min readRead the linked source
Source-provided image accompanying Researchers report Chinese hackers targeted AI firms and Asian governments
소스 참조녹음된 소스
출판사
therecord.media
소스 링크
therecord.mediahttps://therecord.media/china-linked-phishing-scheme-backdoor-taiwan
소스 유형
연결된 소스 — 기본 소스 상태가 설정되지 않았습니다.
맥락60초 안에 이해하세요

여기서 시작하세요

주요 용어

AI 거버넌스
사회에서 AI가 개발되고 사용되는 방식을 안내하는 정책, 표준 및 감독 메커니즘입니다.
자신을 테스트해 보세요AI 윤리 퀴즈

무슨 일이 일어났나요?

Two new reports from Proofpoint and Cisco Talos describe Chinese state-backed hacking campaigns targeting AI professionals and government entities in Asia. Proofpoint identified a July phishing operation impersonating officials to lure AI experts, while Cisco Talos documented the use of the 'Antino' backdoor to compromise 350 endpoints across eight countries.

Researchers at Proofpoint reported on a July incident where a Chinese threat actor conducted phishing attacks against AI experts at universities, think tanks, and law firms. The attackers impersonated prominent figures, including former White House official Lynne Edwards Parker and foreign police expert Heidi Crebo-Rediker. The initial emails used benign conversation starters themed around AI policy, such as invitations to join a fake 'AI Policy Advisory Committee' or participate in a fictitious Senate report on AI export controls. Once victims responded, the attackers deployed URL redirection chains leading to OneDrive credential phishing pages to steal login information.

Cisco Talos published an advisory detailing the use of a backdoor named 'Antino' by Chinese state-backed groups targeting government organizations in Taiwan, India, the Philippines, Cambodia, Pakistan, Thailand, Myanmar, and Syria. The campaign, active between September 2025 and July 2026, resulted in approximately 350 compromised endpoints across 16 organizations. The backdoor enabled reconnaissance, file transfer, and persistent access. Cisco noted that the campaign initially targeted Taiwan's academic and policy community in March 2026 before expanding to other regions, with lures including spoofed news reports and legislative documents.

Proofpoint noted that the group behind the AI-targeted phishing had previously targeted U.S. and Japanese think tanks, defense contractors, and universities, often registering domains that impersonated legitimate organizations like The Heritage Foundation. Cisco Talos also identified overlaps between the Antino campaign and another campaign previously identified by Symantec researchers, suggesting a coordinated or shared infrastructure among Chinese state-linked hacking groups.

소스 세부정보: therecord.media ↗

왜 중요한가요?

These campaigns demonstrate a strategic shift in state-sponsored espionage, specifically leveraging AI policy and research as primary lures to access sensitive intellectual property and government data. The targeting of AI experts indicates that AI capabilities are now viewed as critical national security assets, increasing the risk for researchers and policymakers. The widespread deployment of the Antino backdoor across multiple Asian nations highlights the persistent threat to regional digital infrastructure and the need for enhanced security protocols in AI-focused organizations.

The specific targeting of AI experts and the use of AI policy as a lure indicate that state actors are prioritizing the acquisition of AI-related intellectual property and influence over . This represents a significant escalation in the intersection of cybersecurity and AI development, where the technology itself is the primary objective of espionage.

The deployment of the Antino backdoor across eight Asian countries underscores the vulnerability of government and academic institutions to persistent state-sponsored threats. The scale of the compromise, with 350 endpoints affected, suggests a sophisticated and well-resourced operation aimed at long-term intelligence gathering rather than short-term disruption.

These reports highlight the need for AI organizations and government bodies to adopt more robust security measures, particularly in protecting personnel who are high-value targets for state-sponsored phishing. The use of sophisticated social engineering tactics, such as impersonating high-profile officials, requires advanced training and vigilance among researchers and policymakers.

Interactive Mechanism

대화형 메커니즘: 실제로 작동하는 방식

이 개발의 이면에 있는 기본 기술을 대화식으로 살펴보세요.

System Requirements:
Best ArchitecturePure RAGRecommended pattern
Hallucination RiskVery LowGrounding efficacy
Update Cost$0 (Vector sync)Ongoing maintenance
Core takeaway: Fine-tuning teaches models how to speak (form, style, syntax); RAG teaches models what to say (verifiable facts). Never use fine-tuning alone for factual memory.
대화형 개념 확인+10 Points
AI Ethics Quiz

Why can ethical evaluation not be reduced to one model score?

다음에 무엇을 볼 것인가

Monitor for further disclosures regarding the Antino backdoor and potential expansions of the Proofpoint-identified phishing campaigns. Watch for official responses from the targeted governments and AI firms, as well as any new defensive measures or policy recommendations issued by cybersecurity firms in response to these specific AI-targeted threats.

Future reports may reveal the specific data exfiltrated from the compromised endpoints, which could provide insights into the strategic priorities of the Chinese state in the AI sector. Additionally, watch for any legal or diplomatic responses from the targeted countries to these cyber operations.

Cybersecurity firms may release further details on the Antino backdoor's capabilities and potential variants, which could help other organizations identify and mitigate similar threats. The overlap with Symantec's findings may lead to a broader understanding of the infrastructure used by these state-backed groups.

AI companies and research institutions may implement new security protocols or public advisories in response to these campaigns, potentially affecting how AI research is conducted and shared publicly. This could include increased scrutiny of external communications and partnerships.

관련 가이드 및 퀴즈

AI 윤리AI의 미래AI 모델 설명알고 있는 내용을 테스트해 보세요. 무료 AI 퀴즈를 시도해 보세요.용어집에서 AI 용어를 찾아보세요.AI 규제 추적기를 따르세요
이것이 유용하다고 생각하시나요?