U.S. authorities and researchers are highlighting China-linked espionage that increasingly leverages online recruitment and employment channels to access sensitive information. Reporting on recent federal cases describes foreign intelligence services posing as consulting firms, research groups, or recruiters to approach current and former U.S. government personnel—often starting via email or job platforms and escalating through staged interviews, fake websites, and payment offers—to solicit classified or sensitive information; multiple Justice Department actions in 2025 reportedly involved such virtual-first recruitment approaches.
Separately, a former Google engineer, Linwei Ding, was found guilty of economic espionage and trade secret theft after prosecutors said he exfiltrated over 2,000 pages of confidential AI supercomputing documents (including TPU/GPU architecture details, orchestration software, SmartNIC networking designs, and internal system configurations) and uploaded them to a personal cloud account while maintaining undisclosed ties to China-based companies and engaging with a Shanghai-sponsored talent program. Broader context from CSIS’ long-running survey of Chinese espionage cases underscores that these incidents fit a sustained pattern since 2000 spanning both human intelligence and cyber-enabled theft targeting U.S. government and commercial technologies, while noting open-source case lists likely undercount the true scope.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
8 events from the most recent confirmed update back to the earliest known activity.
CSIS published a survey summarizing alleged and confirmed Chinese espionage and cyber-espionage incidents in the United States from roughly 2000 through 2023. The report highlights sustained targeting of U.S. government, defense, critical infrastructure, healthcare, and commercial entities, along with multiple DOJ indictments and public attributions over the period.
Nextgov/FCW reported that foreign intelligence services, primarily linked to China, were exploiting recent U.S. federal layoffs by approaching former and sometimes current government personnel through fake job offers and recruiter-style outreach. The operations used staged interviews, consulting fronts, and payment offers to solicit classified or sensitive information.
The OpenClaw ecosystem recently patched a high-severity remote code execution vulnerability tracked as CVE-2026-25253. The fix was noted alongside broader concerns about malicious third-party skills in the platform.
Security researchers identified more than 200 malicious 'skills' published for the OpenClaw open-source AI assistant. The packages posed as benign utilities but were designed to deliver information-stealing malware, highlighting supply-chain risk in AI assistant plugin ecosystems.
Okta and Mandiant reported a surge in vishing-driven intrusions tied to ShinyHunters-related clusters that impersonate IT staff to obtain MFA approvals and SSO credentials. The campaigns enabled access to platforms such as Okta, Microsoft Entra, and Google, followed by SaaS data theft and extortion activity.
Former Google software engineer Linwei Ding was found guilty of economic espionage and trade secret theft after exfiltrating more than 2,000 pages of confidential AI supercomputing documents. The material was allegedly shared with China-linked technology interests.
Analysts at the Foundation for Defense of Democracies assessed a network of fake consulting and recruiting firms likely tied to China that targeted current and former U.S. government personnel. An FDD researcher identified more than 100 related websites showing indicators such as China-based registration, Chinese language packs, and plagiarized content.
According to Nextgov/FCW, the U.S. Department of Justice announced charges or indictments in at least five cases during 2025 involving current or former U.S. government personnel accused of passing sensitive information to foreign intelligence services. In nearly all of those cases, the initial contact reportedly occurred online through recruiter-style outreach, email, or job platforms.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
csis.org
Open sourcenextgov.com
Open sourcesentinelone.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.