Google has confirmed that an Iran-linked hacking group, APT42, has targeted the campaigns of both President Biden and former President Trump, with ongoing attempts to compromise personal email accounts. The attacks highlight the continued cyber threats facing U.S. elections.

Google’s cybersecurity arm has revealed that APT42, a hacking group tied to Iran’s Islamic Revolutionary Guard Corps, has been targeting officials associated with the campaigns of President Joe Biden and former President Donald Trump. The report follows a recent confirmation by the Trump campaign that it had been hacked.
Google Blocks Numerous Hacking Attempts
According to Google’s Threat Analysis Group, APT42 attempted to gain access to the personal email accounts of roughly a dozen individuals connected to the Biden and Trump campaigns. Although Google blocked numerous attempts, the report does not confirm that APT42 was responsible for any specific hack and leak operation.
Ongoing Cybersecurity Threats
Google continues to monitor and block ongoing attempts by APT42 to compromise the personal accounts of individuals affiliated with Biden, Trump, and Vice President Kamala Harris. The ongoing nature of these attacks underscores the persistent cybersecurity threats facing political campaigns.
High-Profile Targets
APT42 has successfully accessed the personal Gmail account of a high-profile political consultant, although the individual was not named in the report. Previous reports have indicated that Roger Stone, a Republican operative and Trump supporter, may have been among those targeted.
Historical Context of Cyber Interference
APT42 previously attempted to interfere in the 2020 U.S. presidential elections, targeting the campaigns of Trump and Biden. These efforts were also thwarted by Google, highlighting the ongoing risks of foreign cyber interference in U.S. elections.
COMMENTS