Taiwanese Hackers Accused Of Attacking China

China’s top spy agency, the State Security Ministry (MSS), has said that four individuals probably linked to Taiwan’s military are cyber attacking mainland China. The MSS identified the suspects as members of Taiwan’s Information, Communications, and Electronic Force Command (ICEFCOM) within the defence ministry. 

There have been cyber attacks on China targeting key infrastructure, including power grids, water supplies and telecommunications networks since 2023 and the MSS claim that ICEFECOM has hired hackers and cyber security firms to conduct Taiwan government-directed cyber attacks. 

The MSS report revealed the names and photographs of Taiwanese military personnel accused of being ICEFCOM operatives. These include Lin Yushu, head of the Network Environment Research and Analysis Centre of the “Information, Communications and Electronic Force Command”, Cai Jiehong, team leader of the centre, plus two others. 

In a statement the Taiwanese Prime Minister Cho Jung-tai denied China’s allegations, saying MSS had fabricated them “in order to justify their own ongoing cyberattacks against Taiwan.” ICEFCOM said that its operations focus on national defence not cyber attacks on China, claiming that the accusations are aimed at intimidating the Taiwanese people. 

Taiwan and China’s  have a complex historic relationship which extends to cyberspace and Taiwanese security officials have consistently blamed  Chinese hackers for cyber attacks targeting the nation. In return, China accuses Taiwan of conducting cyber operations against the mainland and has recently begun publicly identifying the alleged threat actors behind the attacks. 

China first publicly named alleged Taiwanese hackers in 2024 when the MSS reported on Anonymous 64, a purported hacktivist group that China claims is actually operated by Taipei, according to Dakota Cary, a China expert  at cyber security firm SentinelOne.

Three Chinese cyber security firms QiAnXin, Antiy and Anheng Information have published separate reports detailing the activities of an alleged Taiwan-linked state threat actor tracked as APT-Q-20. They say that the group has been active since 2006 and has targeted government, military, defence, and scientific research institutions in China to obtain sensitive data. 

Gov.CN    |   SCMP   |   Radio Taiwan   |   Focus Taiwan  |  The Record   |   Taiwan National Security Bureau 

Image: Ideogram

You Might Also Read: 

China's Surveillance State Extends Beyond Its Borders:


If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

Cyber Security Intelligence: Captured Organised & Accessible


 

 

« Combatting Rising AI Attacks With AI-Powered Defences 
MS Windows Zero Day Vulnerability Widely Exploited »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Resecurity

Resecurity

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Quantivate

Quantivate

Quantivate is a provider of web-based Governance, Risk, and Compliance (GRC) software and service solutions.

Backup112

Backup112

Backup112 has been delivering professional cloud backup services since 2004.

SecuPi

SecuPi

SecuPi delivers data-centric security with data-flow discovery, real-time monitoring, behavior analytics, and protection across web and enterprise applications and big data environments.

Cyber Discovery

Cyber Discovery

Cyber Discovery, the UK Government's Cyber Schools Programme, is a learning programme designed to give young people the opportunity to learn the skills needed to enter the cyber security profession.

Cloudentity

Cloudentity

Cloudentity combines Identity for all things with API and Application security in a unique deployment model, combining cloud-transformation and legacy systems.

ABCsolutions

ABCsolutions

ABCsolutions is dedicated to assisting businesses and professionals achieve compliance with federal anti-money laundering regulations in an intelligent and pragmatic way.

OneLayer

OneLayer

OneLayer provide enterprise grade security dedicated for private LTE/5G networks. We ensure that the best IoT security toolkit is implemented in your cellular environment.

Aunalytics

Aunalytics

Aunalytics is a data platform company that delivers insights as a service to answer your most important IT and business questions.

Protelion

Protelion

The Protelion Security Platform is uniquely architected to deliver security solutions that combine greater protection, flexibility, and performance.

The Security Bulldog

The Security Bulldog

The Security Bulldog distills and assimilates open source cyber intelligence to enable security teams to understand threats more quickly, make better decisions, and accelerate detection and response.

Infosec Institute

Infosec Institute

Infosec is a leading cybersecurity training company, we help IT and security professionals advance their careers with skills development and certifications.

Xeol

Xeol

Software free of vulnerabilities, built and distributed by trusted entities. Our mission is to help customers secure their software from code to deploy.

Sonar

Sonar

AI generated or written by humans, Sonar’s Clean Code Solutions cover your code quality needs, improving code reliability, maintainability, and security.

360 Advanced

360 Advanced

360 Advanced is a relationship-focused cybersecurity and compliance firm offering integrated compliance solutions customized to meet your business’ needs.

Swise

Swise

Swise is a Cyber security and compliance platform for your small business. Simplify and automate your security and compliance with our AI-powered platform.

Raven

Raven

Raven are on a mission to help companies protect their cloud native applications by focusing on runtime.