Google: Chinese and Iranian hackers targeting Biden, Trump campaigns

Google: Chinese and Iranian hackers targeting Biden, Trump campaigns

Chinese and Iranian government-backed hackers recently unsuccessfully targeted campaign staff for both President TrumpDonald John TrumpAppeals court OKs White House diverting military funding to border wall construction Pentagon: Tentative meeting between spy agencies, Biden transition set for early next week Conservative policy director calls Section 230 repeal an 'existential threat' for tech MORE and former Vice President Joe BidenJoe BidenAppeals court OKs White House diverting military funding to border wall construction Federal student loan payment suspension extended another month Pentagon: Tentative meeting between spy agencies, Biden transition set for early next week MORE, a Google threat researcher announced Thursday.

Shane Huntley, a member of Google’s Threat Analysis Group (TAG), tweeted that TAG had seen advanced persistent threat (APT) groups sending malicious phishing emails to campaign staffers.

“Recently TAG saw China APT group targeting Biden campaign staff & Iran APT targeting Trump campaign staff with phishing,” Huntley tweeted. “No sign of compromise. We sent users our govt attack warning and we referred to fed law enforcement.”


Google’s government attack warning alerts users that hackers may be attempting to steal their password, and urges them to sign up for Google’s Advanced Protection Program. Huntley wrote in a blog post in 2018 that an “extremely small fraction of users” will get this alert, but that if a user does receive one, they should “take immediate action” to secure their account.

A spokesperson for the Biden campaign told The Hill that they were “aware” of the targeting.

"We are aware of reports from Google that a foreign actor has made unsuccessful attempts to access the personal email accounts of campaign staff,” the spokesperson said. “We have known from the beginning of our campaign that we would be subject to such attacks and we are prepared for them.”

The spokesperson emphasized that “Biden for President takes cybersecurity seriously, we will remain vigilant against these threats, and will ensure that the campaign's assets are secured."

A spokesperson for the Trump campaign told The Hill that they had received a briefing on the incident. 


"The Trump campaign has been briefed that foreign actors unsuccessfully attempted to breach the technology of our staff," the spokesperson said. "We are vigilant about cybersecurity and do not discuss any of our precautions."

Both Iran and China are considered, alongside Russia and North Korea, to be top threats to the U.S. in cyberspace. Tensions between the U.S. and China have spiked during the COVID-19 outbreak, while tensions with Iran reached a boiling point in January following the targeting and killing of Iranian Gen. Qasem Soleimani. 

The phishing emails are not the first efforts to target presidential campaigns this year. 

Microsoft announced in October that an Iranian hacking group known as “Phosphorus” had targeted the email accounts of Trump campaign staffers, but the accounts were not compromised. 

Former Democratic presidential candidate Sen. Bernie SandersBernie SandersOn The Money: Unemployment gains lower than expected | Jobs report lights fire under coronavirus relief talks Sanders says he can't support bipartisan COVID-19 relief proposal in its current form Progressives push for direct payments to be included in COVID-19 relief deal MORE (D-Vt.) said in February that his campaign had been briefed by U.S. intelligence community officials about Russian efforts to assist his presidential campaign by spreading disinformation. 

According to The New York Times, Russian actors simultaneously sought to interfere in the presidential election to favor Trump’s campaign. 

This interference came two years after Russian agents spread disinformation and targeted U.S. election infrastructure in an effort to help get Trump elected president, according to former special counsel Robert MuellerRobert (Bob) MuellerBarr taps attorney investigating Russia probe origins as special counsel CNN's Toobin warns McCabe is in 'perilous condition' with emboldened Trump CNN anchor rips Trump over Stone while evoking Clinton-Lynch tarmac meeting MORE and U.S. intelligence officials. 

FBI Director Christopher Wray testified in February that foreign influence operations by Russia had “never stopped” after 2016, pointing to evidence that Russian malicious actors were using false personas online to spread disinformation. 

-Updated at 4:25 p.m.