Andy Burnham was a few weeks into the job as the new Prime Minister of the UK when he found himself exchanging messages with someone claiming to be Susie Wiles, the White House chief of staff. The exchange, first reported by Politico last week, was brief and apparently trivial. Burnham grew suspicious, stopped replying and told the right people; the British embassy in Washington quietly informed the White House, which confirmed that Wiles’s own devices hadn’t been touched. No harm done, officially.
Embarrassments like this are becoming more common. The FBI warned last year about impostors using AI to mimic senior officials, after someone posing as Wiles contacted senior Republicans and business figures. The State Department later chased a fake Marco Rubio who reached three foreign ministers. And every one of these approaches lands on a habit “Signalgate” already exposed: when one wrong contact card could add a journalist to a strike-planning thread, the name on the screen was the only authentication in the room. If you want to see what this security weakness looks like run as a nation-state campaign look at a case that closed quietly in Taipei last month.
In July, prosecutors in Taipei’s Shilin district wrapped up proceedings against two local businessmen, Li Hualun and Chen Mengsen, who had spent months registering accounts on LINE (the messaging app nearly everyone in Taiwan uses), each tied to a real Taiwanese phone number. They leased the accounts to Xiamen Empress Information Technology, a mainland firm Taiwanese investigators say works under the direction of the Chinese Communist Party’s cyber forces. The going rate was about 1,100 RMB per account, call it $160.
A working exploit for a major platform costs millions on the gray market. A trusted local identity cost less than a decent dinner, and it did something no technical exploit can do.
The operators used the fake accounts to become journalists. In the approach that eventually unraveled the scheme, one of them even dressed up a leased account in the name and photo of Chen Yishan, editor-in-chief of CommonWealth Magazine, and began courting an aide in a legislator’s office. Interview requests, invitations to contribute articles, the ordinary traffic of political journalism followed.
There was no malicious link in the first message, or the tenth. Investigators found the operators worked on targets for months, sometimes close to a year. Any counterintelligence officer would recognize the rhythm. It was the patient cultivation and recruitment of an agent run through a chat app.
The eventual ask was small and reasonable-sounding. Journalists use encrypted tools to protect their sources, so would the contact mind installing a secure communication app to keep talking? The app was in fact malware. The MO turns a decade of good security advice inside out. The more someone knew about how careful reporters actually operate, the more normal the request looked.
Researchers at Citizen Lab and the International Consortium of Investigative Journalists, whose reporting the Taiwanese prosecution now corroborates, counted more than a hundred malicious domains behind the wider campaign, and found errors in the phishing messages suggesting the attackers were using AI to draft them and to pick targets. The people on the receiving end were lawmakers and their staffs, defense think tanks, semiconductor companies, dissidents at home and abroad. Taiwanese media reported that even the island’s overseas missions were probed.
Through all of it, nothing technical failed. The networks held and the patches were current. The attackers went around the security stack entirely, and the thing they spent, their actual operational currency, was the credibility of a free press. Every fake interview request makes the real ones a little harder. This cost never shows up in an incident report.
The two men who supplied the accounts got deferred prosecutions and payments totaling a bit under $6,000. That is the current legal price, in a frontline democracy, for renting identity infrastructure to a foreign intelligence service. It isn’t a deterrent. It’s barely a business expense.
Which brings us back to Downing Street. A prime minister with the full apparatus of British intelligence behind him replied to a stranger because the name on the screen looked right. Nothing in either story depends on LINE, or Taiwan, or Westminster.
Swap in WhatsApp or LinkedIn; swap the fake editor for a fake recruiter or a fake chief of staff. Aged, locally registered accounts are already a commodity in criminal markets. All the model requires is a person who handles something worth stealing and a persona they have no fast way to check.
That last part is fixable, though not by the security team alone. Organizations that handle sensitive work should treat identity verification as a counterintelligence habit. Platforms need to treat the account-rental trade Taiwan uncovered as the national security problem it has become rather than a terms-of-service nuisance. And legislatures need to punish collaboration with foreign intelligence services at something above a traffic ticket.
Mostly, though, the people likeliest to be approached — the legislative staffer, the fab engineer, the think-tank fellow, the human rights activist, apparently the occasional head of government — need to become more educated on how foreign intelligence cultivation and targeting actually works: slowly, warmly, and with no suspicious link in sight until the very end. The adversary in this case looked at hardened networks and vigilant software and made a rational choice. Building a fake trusted persona was cheaper — $160 a head – than spending millions on a sophisticated cyber exploit. We need to start defending the credibility of verified, trusted identifies the way we defend our networks: as the attack surface it already is.The Cipher Brief is committed to publishing a range of perspectives on national security issues submitted by deeply experienced national security professionals. Opinions expressed are those of the author and do not represent the views or opinions of The Cipher Brief.Have a perspective to share based on your experience in the national security field? Send it to Editor@thecipherbrief.com for publication consideration.
Read more expert-driven national security insights, perspective and analysis in The Cipher Brief
Facts Only
* Andy Burnham exchanged messages with someone claiming to be Susie Wiles.
* The British embassy in Washington informed the White House regarding the exchange.
* The FBI warned last year about impostors using AI to mimic senior officials contacting Republicans and business figures.
* Prosecutors in Taipei's Shilin district concluded proceedings against Li Hualun and Chen Mengsen.
* Li Hualun and Chen Mengsen registered accounts on LINE tied to real Taiwanese phone numbers.
* These accounts were leased to Xiamen Empress Information Technology, allegedly working under Chinese Communist Party cyber forces.
* The going rate for the leased accounts was approximately 1,100 RMB per account ($160).
* Operators used fake accounts to become journalists and courted aides through interview requests and article invitations.
* Researchers found errors in phishing messages suggesting AI was used for drafting and targeting.
* The operators rented identity infrastructure rather than relying on technical exploits.
Executive Summary
A high-level official was contacted through a messaging exchange with an individual claiming to be Susie Wiles, the White House chief of staff, which initially appeared trivial. This incident highlights increasing risks involving impersonation using Artificial Intelligence, as evidenced by prior warnings from the FBI regarding impostors mimicking senior officials. The narrative shifts to how seemingly benign interactions can expose systemic security weaknesses, specifically noting that even with advanced cybersecurity, the vulnerability lies in identity verification and association within established networks.
The subsequent investigation involved exploiting identity infrastructure: two businessmen registered accounts on LINE, leased them to a mainland firm allegedly working for Chinese Communist Party cyber forces, and used these accounts to engage journalists through seemingly legitimate requests. The scheme operated by cultivating targets over months, leveraging the trusted nature of journalistic work, making malicious requests appear normal. The actors successfully bypassed technical security by exploiting the credibility of free press, demonstrating that operational currency in this context is not a sophisticated exploit but rather the manipulation of verifiable identities.
Full Take
The core pattern revealed is the shifting locus of security risk from technological defenses to human and institutional credibility. The attack vector utilized social engineering layered over existing, trusted digital identities, demonstrating that sophisticated network defenses are insufficient if the assumed context (e.g., a journalist seeking an interview) remains intact. The cost-benefit analysis demonstrated that fabricating a persona was significantly cheaper ($160 per head) than developing a complex cyber exploit to breach hardened systems, suggesting that the most effective leverage point against powerful entities is the perceived sanctity of information channels rather than cryptographic strength alone.
The mechanism successfully subverted procedural security by making malicious requests appear normal through patient cultivation and mimicking the rhythm of legitimate interaction. This implies that counterintelligence effectiveness depends less on network patching and more on cultivating an awareness within targeted individuals about the cultivation process itself, turning the very act of verification into a counterintelligence habit. The implication is that defenses must pivot from solely securing data streams to defending the ontological status of verified identities themselves, recognizing that the credibility of information infrastructure forms a primary national security asset.
Bridge Questions: If identity verification becomes a necessary counterintelligence habit, what specific institutional protocols are required across government and technology sectors to enforce this cultural shift? How can legislatures establish deterrents against collaboration with foreign intelligence services when the transaction cost is structured around commodity identity rental? What mechanisms exist to assess the long-term impact of prioritizing persona credibility over purely technical security measures in high-stakes environments?
Sentinel — Human
The text reads like expert analysis synthesizing multiple sources to draw a specific, nuanced conclusion about identity security in the context of statecraft, exhibiting high analytical complexity consistent with human expertise.
