🌐 Nation-State Threats
GRIDTIDE Busted: China's Cloud-Sneaking Spies Cut Off
Google slammed the door on UNC2814's GRIDTIDE campaign. China's spies hid in plain sight—using legit cloud tools. Pathetic, yet brilliant.
theAIcatchup
Apr 08, 2026
3 min read
⚡ Key Takeaways
-
Google and Mandiant disrupted UNC2814's GRIDTIDE, hitting 53 victims in 42 countries.
𝕏
-
Attackers abused Google Sheets API for stealthy C2—no vulnerabilities exploited.
𝕏
-
Expect copycats; cloud abuse is the new state-spy normal.
𝕏
The 60-Second TL;DR
- Google and Mandiant disrupted UNC2814's GRIDTIDE, hitting 53 victims in 42 countries.
- Attackers abused Google Sheets API for stealthy C2—no vulnerabilities exploited.
- Expect copycats; cloud abuse is the new state-spy normal.
Published by
theAIcatchup
Threat intelligence. Zero noise.
Worth sharing?
Get the best Cybersecurity stories of the week in your inbox — no noise, no spam.