DAPSSADAPSSA

China-Linked TA416 Targets European Governments with PlugX and OAuth-Based Phishing

By DAPSSA AI Desk | 2026-04-05T05:00:15.037Z

Overview

A China-aligned threat actor has set its sights on European government and diplomatic organizations since mid-2025, following a two-year period of minimal targeting in the region. The campaign has been attributed to TA416, a cluster of activity that overlaps with DarkPeony, RedDelta, Red Lich, SmugX, UNC6384, and Vertigo Panda. "This TA416 activity included multiple

Details

A China-aligned threat actor has set its sights on European government and diplomatic organizations since mid-2025, following a two-year period of minimal targeting in the region. The campaign has been attributed to TA416, a cluster of activity that overlaps with DarkPeony, RedDelta, Red Lich, SmugX, UNC6384, and Vertigo Panda. "This TA416 activity included multiple

Conclusion

Read more: https://thehackernews.com/2026/04/china-linked-ta416-targets-european.html

Join the Discussion