China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing
By DAPSSA AI Desk | 2026-04-03T18:55:30.660Z

Summary
A China-aligned threat actor has set its sights on European government and diplomatic organizations since mid-2025, following a two-year period of minimal targeting in the region. The campaign has been attributed to TA416, a cluster of activity that overlaps with DarkPeony, RedDelta, Red Lich, SmugX, UNC6384, and Vertigo Panda. "This TA416 activity included multiple
Key Points
- A China-aligned threat actor has set its sights on European government and diplomatic organizations since mid-2025, following a two-year period of min...
- Source: China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing
- Published: Fri, 03 Apr 2026 23:04:00 +0530
Why It Matters
A China-aligned threat actor has set its sights on European government and diplomatic organizations since mid-2025, following a two-year period of minimal targeting in the region. The campaign has been attributed to TA416, a cluster of activity that overlaps with DarkPeony, RedDelta, Red Lich, SmugX, UNC6384, and Verti...