Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

China-Linked UAT-7290 Targets Telecom Networks In South Asia

January 8, 2026

IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & More

January 8, 2026

New Zero-Click Attack Lets ChatGPT User Steal Data

January 8, 2026
Facebook X (Twitter) Instagram
Friday, January 9
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»China intensifies Cyber-Attacks on Taiwan
News

China intensifies Cyber-Attacks on Taiwan

Team-CWDBy Team-CWDJanuary 7, 2026No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Chinese cyber threat actors intensified effort to gain access to Taiwan’s critical infrastructure organizations in 2025, with a particular emphasis on the energy sector, emergency rescue entities and hospitals.

In a new report published on January 4, the National Security Bureau (NSB) of the Republic of China, the official name of Taiwan, shows that the country’s critical infrastructure suffered unprecedented cyber intrusion attempts coming from China over the past year.

The NSB recorded a total of 960,620,609 cyber intrusion attempts targeting Taiwan’s critical infrastructure allegedly coming from “China’s cyber army” in 2025. This represents an average of 2.63 million cyber intrusion attempts hitting one organization deemed critical by the island nation every day.

This also marks a 6% increase from 2024 data and a 112.5% increase compared to 2023.

In Taiwan, the nine sectors considered critical include communications and transmission, emergency rescue and hospitals, energy, finance, food, public administrations and government agencies, science parks and industrial parks, transportation and water resources.

The most staggering spike in Chinese cyber intrusion attempts targeted the Taiwanese energy sector, which saw a tenfold increase compared to 2024 attacks.

Emergency rescue entities and hospitals on the island also suffered heightened cyber threats coming from China, with a reported 54% rise in intrusion attempts in 2025 compared to the previous year.

In contrast, water resources and finance saw significant decreases in Chinese-based cyber-attack attempts, dropping by 50% and 48.2% respectively.

Top Chinese Hacking Groups Targeting Taiwan

The top five Chinese hacker groups identified by the NSB for targeting Taiwanese critical infrastructure in 2025 included BlackTech (aka Circuit Panda, Canary Typhoon and Earth Hundu), Flax Typhoon (aka Ethereal Panda, Storm-0919), Mustang Panda (aka Basin, Bronze President and Twill Typhoon), APT41 (aka Bronze Atlas, Brass Typhoon, Double Dragon, Leopard Typhoon and Wicked Panda) and UNC3886.

These five groups reportedly focused on five primary sectors, including energy, healthcare, communications and transmission, administration and agencies and technology.

“In particular, the hacking methods included intensive probing of network equipment and industrial control systems (ICS) of Taiwan’s energy companies and implantation of malware,” reads the report.

“The threat actors also employed ransomware to compromise the operation of major hospitals, and sold data stolen from medical institutions on dark web forums. In 2025, at least 20 cases were identified.”

Globally, the NSB report outlined four major tactics employed by Chinese threat actors when targeting Taiwan critical infrastructure organizations in 2025: hardware and software vulnerability exploitation, distributed denial-of-service (DDoS), social engineering and supply chain attacks.

Despite being listed as different tactics, threat actors typically combine two or more approaches in cyber intrusion campaigns.

The NSB noted that vulnerability exploitation appeared in more than half of China’s hacking operations.

Notably, these actors exploited vulnerabilities in the network equipment of Taiwan’s telecom industry and hacked into networks of service providers and subcontractors to infiltrate sensitive and backup communication links.

Read now: Chinese APT Group Targets Web Hosting Services in Taiwan

Chinese Hacking Tied to Military and Political Events

Finally, the NSB report highlighted that Chinese actors’ campaigns against Taiwanese organizations followed specific pattern in conjunction with Taiwanese national or geopolitical events.

For instance, the report noted that in 2025, hacking and intrusion operations against Taiwan demonstrated a certain extent of correlation with joint combat readiness patrols carried out by China’s People’s Liberation Army (PLA).

The NSB also found that China ramped up hacking activities during Taiwan’s major ceremonies, the issuances of important government statements or overseas visits by high-level Taiwanese officials.

The report stated that cyber-attacks targeting Taiwan peaked in May 2025, coinciding with the first anniversary of the inauguration of the Taiwanese president, Lai Ching-te.



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleThe ROI Problem in Attack Surface Management
Next Article Transparent Tribe Launches New RAT Attacks Against Indian Government and Academia
Team-CWD
  • Website

Related Posts

News

China-Linked UAT-7290 Targets Telecom Networks In South Asia

January 8, 2026
News

IoT Exploits, Wallet Breaches, Rogue Extensions, AI Abuse & More

January 8, 2026
News

New Zero-Click Attack Lets ChatGPT User Steal Data

January 8, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202521 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views

U.S. Treasury Sanctions DPRK IT-Worker Scheme, Exposing $600K Crypto Transfers and $1M+ Profits

September 5, 20256 Views

Ukrainian Ransomware Fugitive Added to Europe’s Most Wanted

September 11, 20255 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202521 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Exploit Threat Intel Platforms For Phishing

September 7, 20256 Views
Our Picks

How to help older family members avoid scams

October 31, 2025

Why the tech industry needs to stand firm on preserving end-to-end encryption

September 12, 2025

How chatbots can help spread scams

October 14, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.