logo

Taiwan critical infrastructure targeted by hackers with possible ties to Volt Typhoon

ID: 61e527d5-0949-59e4-8d6a-250b9685fa9c

STIX ID: report--61e527d5-0949-59e4-8d6a-250b9685fa9c

Feed Name: The Record from Recorded Future News

Threat Score
88/100

Date Published: 2025-03-20

Date Updated: 2026-05-01

...
...

Cisco Talos and ESET report that China-linked operators (tagged UAT-5918 and FishMonger) have conducted sustained cyber-espionage campaigns since at least 2023 against Taiwanese critical infrastructure sectors — including telecommunications, healthcare, and IT — exploiting unpatched web/application servers to gain long-term access, steal credentials and data, and establish persistent administrative access, with overlaps to known APTs such as Volt Typhoon and Flax Typhoon and potential for disruptive operations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.