Tenfold rise in China-linked cyberattacks against Taiwan's energy sector in 2025
Target Trend
Summary
Hide ▲
Show ▼
China-linked cyberattacks against Taiwan's energy sector surged by 1,000% / tenfold in 2025, signaling a sharp escalation against critical infrastructure. The increase stood out within a broader pattern of targeting across nine key sectors, with energy hit hardest. The activity matters because it paired sustained probing with planned software upgrades, industrial control systems, and other operational exposure points.
Related Happenings
Mustang Panda Asia-Pacific and Japan CDN impersonation espionage campaign
Campaign
First: 14.05.2026 18:00
Last: 14.05.2026 18:00
Sources 1
About this happening:
A **Mustang Panda** espionage campaign used **CDN impersonation** and **DLL sideloading** to target **Asia-Pacific and Japan** networks, extending from **late September 2025 throu...
Mustang Panda Asia-Pacific and Japan CDN impersonation espionage campaign
CampaignAbout this happening: A **Mustang Panda** espionage campaign used **CDN impersonation** and **DLL sideloading** to target **Asia-Pacific and Japan** networks, extending from **late September 2025 throu...
China-nexus threat-Flax Typhoon-Volt Typhoon alliance reshapes ransomware ecosystem operations
Threat Actor Meta
First: 23.04.2026 23:52
Last: 23.04.2026 23:52
Sources 1
About this happening:
**China-nexus** threat actors are industrializing covert botnet infrastructure, expanding **deniable reconnaissance**, **malware delivery**, and **data exfiltration** against **US...
China-nexus threat-Flax Typhoon-Volt Typhoon alliance reshapes ransomware ecosystem operations
Threat Actor MetaAbout this happening: **China-nexus** threat actors are industrializing covert botnet infrastructure, expanding **deniable reconnaissance**, **malware delivery**, and **data exfiltration** against **US...
OTI Impact Score unveiled as a rapid scoring method for OT cyber incidents
Security Tool/Service
First: 25.02.2026 14:00
Last: 25.02.2026 14:00
Sources 1
About this happening:
The **Operational Technology Incident (OTI) Impact Score** is being unveiled at **S4x26 in Miami** as a rapid way to assess **OT cyber incidents**. It matters because the framewor...
OTI Impact Score unveiled as a rapid scoring method for OT cyber incidents
Security Tool/ServiceAbout this happening: The **Operational Technology Incident (OTI) Impact Score** is being unveiled at **S4x26 in Miami** as a rapid way to assess **OT cyber incidents**. It matters because the framewor...
Singapore disrupts UNC3886 telco intrusion campaign
Law Enforcement
First: 10.02.2026 14:30
Last: 10.02.2026 14:30
Sources 1
About this happening:
**Singapore** disrupted **UNC3886** attacks against the country's **four telecommunications operators**, ending a secret **11-month** counter-cyber operation. The effort, known as...
Singapore disrupts UNC3886 telco intrusion campaign
Law EnforcementAbout this happening: **Singapore** disrupted **UNC3886** attacks against the country's **four telecommunications operators**, ending a secret **11-month** counter-cyber operation. The effort, known as...
NCSC alert for UK CNI severe cyber threats
Public Sector Action
First: 10.02.2026 13:50
Last: 10.02.2026 13:50
Sources 1
About this happening:
The **NCSC** issued an alert telling **critical national infrastructure (CNI) providers** to **act now** against **severe cyber threats**, aiming to reduce the risk of disruptive...
NCSC alert for UK CNI severe cyber threats
Public Sector ActionAbout this happening: The **NCSC** issued an alert telling **critical national infrastructure (CNI) providers** to **act now** against **severe cyber threats**, aiming to reduce the risk of disruptive...
Timeline
-
07.01.2026 00:27 2 articles · 4mo ago
NSB reports tenfold rise in China-linked attacks on Taiwan's energy sector
Initial DisclosureTaiwan's National Security Bureau says China-linked cyberattacks against Taiwan's energy sector increased tenfold in 2025 versus 2024, with wider targeting across nine key sectors and attack methods including hardware and software vulnerabilities, DDoS, social engineering, and supply-chain incidents. The agency says activity against public-owned and private energy companies involved probing network equipment and industrial control systems and watching planned software upgrades for malware implantation opportunities, and it attributes the activity to BlackTech, Flax Typhoon, Mustang Panda, APT41, and UNC3886.
Show sources
- Taiwan says China's attacks on its energy sector increased tenfold — www.bleepingcomputer.com — 07.01.2026 00:27
- Taiwan says China's attacks on its energy sector increased tenfold — www.bleepingcomputer.com — 07.01.2026 00:27