Taiwan critical infrastructure targeted by hackers with possible ties to Volt Typhoon
ID: 61e527d5-0949-59e4-8d6a-250b9685fa9c
STIX ID: report--61e527d5-0949-59e4-8d6a-250b9685fa9c
Feed Name: The Record from Recorded Future News
Cisco Talos and ESET report that China-linked operators (tagged UAT-5918 and FishMonger) have conducted sustained cyber-espionage campaigns since at least 2023 against Taiwanese critical infrastructure sectors — including telecommunications, healthcare, and IT — exploiting unpatched web/application servers to gain long-term access, steal credentials and data, and establish persistent administrative access, with overlaps to known APTs such as Volt Typhoon and Flax Typhoon and potential for disruptive operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
