Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Taiwan hit by major cyber-espionage attack
Share
Cyber IntelligenceCyber Intelligence
Aa
  • News
  • Analysis
  • Expert Opinions
  • Resources
Search
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

Cyber Intelligence

Linkedin
  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map
Reading: Taiwan hit by major cyber-espionage attack
Share
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
NewsTaiwanGeopoliticsCyber Espionage

Taiwan hit by major cyber-espionage attack

Editorial Team
October 11, 2023 at 12:47 PM
By Editorial Team Editorial Team
Share
Taiwan cyber espionage
SHARE

Taiwan cyber espionage

A cyber-espionage campaign in the Pacific, directed principally at Taiwan, which took place in the Spring, has now come to light. According to cybersecurity company, Symantec,  a large-scale program of cyber-enabled international espionage began in February 2023 and continued until at least May 2023.

The chief targets of the campaign were Taiwan’s critical infrastructure leading to the conclusion that the hackers were politically rather than financially motivated. This type of Advanced Persistent Threat (APT) is used to garner information and data rather than financial theft or extortion, the usual modus operandi of skilled cyber-criminals. APT groups, often under the control of an aggressive foreign power, also use this form of unobserved infiltration to install “sleeper” malware to be activated on a later day.

“The sectors the victims operate in – manufacturing, IT, biomedical, and government – are also sectors that are most likely to be targeted for intelligence gathering rather than for financial reasons,” says Symantec.

The campaign also hit a government agency in the Pacific Islands and organizations in Vietnam plus some in the US. All the countries targeted by the carefully planned and professionally executed cyber-espionage campaign therefore appear to be those opposing China’s hostile program of, expansion in the South China Seas. The US has long opposed an aggressive takeover of the independent country of Taiwan, which the Chinese Communist Party (CCP) still regards as part of mainland China. Taiwan feels highly threatened by China and is constantly preparing for a Chinese invasion and looks to the US for support. Having once fought a thousand-year-long war against each other, Vietnam and China are traditional foes.

Aptly named “Havoc” crucial to cyber-espionage

According to Symantec, the attackers, whom Symantec has named “Grayling”, take various actions once they gain initial access to victims’ computers, including escalating privileges, network scanning, and using downloaders in order to steal privileged information and also to potentially installing malignant software for future use. These highly malicious payloads can include the aptly named “Havoc” – a new form of malware developed earlier this year that is capable of attacking its unwitting hosts across all platforms. Havoc has fast become an essential tool for high-level state-sponsored cyber-espionage, as industrial and research facilities use industrial operating systems which are very different from the operating systems in general commercial use.

But Havoc is not only cross-platform and capable of sitting secretly on an organization’s operating systems gradually siphoning out crucial information, but is also capable of downloading other more destructive payloads that could potentially sit within a system for months before being remotely triggered by the attackers. This could then be used to create social economic timed to coincide with a  naval or military incursion. While Symantec is careful not to name China as the potential aggressor behind the Grayling attacks, the logical finger of blame still points firmly at the Chinese Communist Party (CCP).

“We have not been able to definitively link Grayling to a specific geography, but the heavy targeting of Taiwanese organizations does indicate that they likely operate from a region with a strategic interest in Taiwan,” says Symantec.

But Western security sources close to the situation now regard the attacks as evidence of the escalating likelihood of an incursion into the disputed territory of Taiwan by the Chinese, with the threat becoming even more imminent as a result of the ongoing wars in Ukraine and Israel turning the West’s attention and resources away from the South China Seas and closer to home.

TAGGED: israel, havoc, war, Cybersecurity, symantec, china, advanced persistent threat, cyber espionage, apt, data gathering, taiwan, cyber intel, vietnam, south china sea dispute, ukraine, us cyber support, geopolitics, grayling
Share This Article
Twitter LinkedIn Email Copy Link Print
Previous Article The Daily Decrypt - One Minute Roundup LockBit threatens another major data leakage – October 11th
Next Article Cost of texting fraud rises fivefold in three years
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Editor's Pick

You Might Also Like

SpywareNews

Spyware poses a growing threat

“Lurking in the murky depths of the global marketplace for offensive cyber capabilities sits a particularly dangerous capability—spyware,” warns the Atlantic Council, a Washington, DC-based organization that promotes transatlantic cooperation and global economic prosperity. The number of US-based entities investing in the spyware market is three times greater than in the next three-highest countries with the most investors, according to a report published by the Atlantic Council on September 10: Mythical Beasts: Diving into the depths of the global spyware market.

September 12, 2025
CybergangsNews

Teenage hackers take down JLR

Carmaker Jaguar Land Rover (JLR) has shut down its systems after suffering a cyber-attack. The group claiming responsibility for the attack, The Com, also referred to as Scattered Spider, is a loosely affiliated online community of predominantly teenage English-speaking hackers based in the UK and the US.

September 5, 2025
Cyber EspionageGovernmentGeopoliticsNews

Over half of cyber-attacks are state-sponsored

Over half of cyber-attacks exploiting known vulnerabilities are the work of state-sponsored groups from abroad, mainly from China. According to cybersecurity company Recorded Future’s research arm, Insikt Group, 53 percent of observed exploitation activity in the first half of this year was driven by state-sponsored and suspected state-sponsored actors and conducted for espionage, surveillance, or other geopolitical objectives.

September 2, 2025
ChinaCyber EspionageSurveillanceSpywareNews

China is now spying on you

The Chinese government now has a vast storehouse of confidential information belonging to key industries and individuals in the US and UK and many other countries. According to an urgent joint cybersecurity advisory issued by the US National Security Agency (NSA) and other U.S. and foreign organizations, threat actors sponsored by the Chinese government, notably Salt Typhoon, have been consistently targeting telecommunications, government, transportation, lodging, and military infrastructure networks globally.

August 29, 2025

Cyber Intelligence

We provide in-depth analysis, breaking news, and interviews with some of the leading minds in cybersecurity and distill critical insights that matter to our readers. Daily.

Linkedin

Category

  • Cybercrime
  • News

Quick Links

  • News
    • Aerospace
    • Apple
    • Arrest
    • Automotive
    • Big Tech
    • Breaking News
    • Business Email Compromise
    • China
    • Chip Technology
    • Cryptocurrency
    • Cyber Budget
    • Cyber Espionage
    • Cyber M&A
    • cybercrime
    • Data Leak
    • deepfake
    • Energy Sector
    • Ethiopia
    • Finance
    • France
    • Geopolitics
    • Government
    • Hacktivism
    • Healthcare
    • Human Error
    • Investment Scam
    • Iran
    • Israel Conflict
    • Malicious Bots
    • Malware
    • North Korea
    • Norton
    • One Minute Roundup
    • ransomware
    • SEC
    • SMB
    • Social Media
    • Sri Lanka
    • Taiwan
    • VPN
    • Wire Fraud
    • Workforce Cyber
  • Analysis
  • Expert Opinions
  • Resources
    • Conferences
    • Glossary of terms
    • Awards
    • Ecosystem map

© 2023 Cyberintel.media

Welcome Back!

Sign in to your account

Lost your password?