---
schema: 1
kind: threat
title: "Five Eyes joint bulletin: Chinese military intelligence recruiting cleared personnel through LinkedIn and job platforms"
headline: "Five Eyes joint bulletin: Chinese military intelligence recruiting cleared personnel through LinkedIn and job platforms"
summary: "Five Eyes issue a rare joint bulletin on Chinese intelligence recruiting via LinkedIn and job platforms — targeting cleared personnel, researchers and policy staff; directly relevant to Swiss/EU public-sector personnel security (The Record, 2026-06-03)."
discovered_at: "2026-06-06T05:00:00Z"
event_date: 2026-06-03
run_id: 2026-06-06-d01b95fe
priority: high
immediate_action: null
tags:
  - nation-state
  - espionage
  - china-nexus
regions:
  - global
  - uk
sectors:
  - public-sector
  - defense
entities: []
cves: []
sources:
  - url: "https://www.mi5.gov.uk/five-eyes-joint-bulletin-safeguarding-our-secrets"
    publisher: "MI5 — Five Eyes joint bulletin \"Safeguarding Our Secrets\""
    role: primary
  - url: "https://therecord.media/five-eyes-warns-chinese-spies-are-using-job-sites-to-recruit-insiders"
    publisher: "The Record, 2026-06-03"
    role: corroborating
closed_sources: []
evidence: []
verification: multi-source
sourcing_note: null
confidence: high
update_of: null
references: []
deep_dive: false
deep_dive_category: null
org_triage: null
watchlist_hit: false
actions: []
migrated_from: briefs/2026-06-06.md
---

On 2026-06-03 the five Five Eyes domestic-intelligence services (ASIO, CSIS, FBI, MI5, NZSIS) released an unusual joint bulletin, *Safeguarding Our Secrets*, warning that China's military-intelligence apparatus is systematically using professional-networking and freelance-work platforms — LinkedIn, Indeed, Upwork — to identify and cultivate people with access to classified or otherwise privileged information ([MI5, 2026-06-03](https://www.mi5.gov.uk/five-eyes-joint-bulletin-safeguarding-our-secrets); [The Record, 2026-06-03](https://therecord.media/five-eyes-warns-chinese-spies-are-using-job-sites-to-recruit-insiders)). Operatives pose as recruiters, consultants, HR representatives or think-tank staff for fabricated cover companies outside China, open with benign foreign-policy / defence / trade research commissions paying hundreds to a few thousand dollars per deliverable, then escalate toward sensitive material and migrate the relationship to encrypted messaging to reduce platform visibility. Named target categories include security-clearance holders, military personnel, academics, researchers and journalists.

**Why it matters to us:** This is a human-intelligence tradecraft advisory rather than a technical-intrusion one, and Switzerland — outside Five Eyes but a hub for international organisations, financial regulation and dual-use research — is squarely in the target set. The defensible surface is personnel-security, not EDR: brief cleared and research staff on the innocuous-task-to-sensitive-request progression, give them a low-friction route to report unsolicited foreign-recruitment contact, and treat unsolicited "paid policy paper" approaches to staff with administrative or network access as a counter-intelligence signal, not a side gig.
