Taiwan says China's attacks on its energy sector increased tenfold
好的,我现在需要帮用户总结一篇文章的内容,控制在100字以内。首先,我得仔细阅读文章内容,抓住主要信息。 文章主要讲的是台湾国安局的报告,指出2025年中国对台湾能源部门的网络攻击增加了十倍。关键点包括攻击目标的行业、攻击手段以及幕后黑手。 接下来,我需要提取关键数据:能源部门攻击增长1000%,其他行业的变化情况,使用的攻击方法如漏洞利用、DDoS、社会工程等,以及涉及的黑客组织名称。 然后,我要把这些信息浓缩成一句话,确保涵盖主要事件和数据,同时保持简洁明了。注意不要使用“文章内容总结”这样的开头词。 最后,检查字数是否在限制内,并确保信息准确无误。 </think> 台湾国安局报告称2025年中国对台网络攻击激增,尤其能源部门攻击量较2024年增长1000%。通信、医疗等关键基础设施亦遭重点 targeting。报告指出攻击手法包括漏洞利用、DDoS、社会工程及供应链入侵,并归咎于多个中国黑客组织。 2026-1-6 22:30:24 Author: www.bleepingcomputer.com(查看原文) 阅读量:7 收藏

Taiwan says China's attacks on its energy sector increased tenfold

The National Security Bureau in Taiwan says that China's attacks on the country's energy sector increased tenfold in 2025 compared to the previous year.

A report from the agency highlights that attackers targeted critical infrastructure in nine key sectors, and the total number of cyber incidents linked to China grew by 6%.

The emergency rescue and hospitals sectors saw an increase in cyberattacks of 54%, while communications and transmissions recorded 6.7% more incidents.

Wiz

Threat activity on industrial parks and food remained unchanged, administration agencies recorded a small decrease, while the finance and water resources sectors saw a significant reduction.

However, Taiwan's National Security Bureau (NSB) notes that the most significant activity was recorded in the energy sector, where the number of cyberattacks grew by 1,000% in 2025 compared to 2024.

Diagram
Taiwan's National Security Bureau stats on Chinese attacks
source: nsb.gov.tw

Taiwan claims that many of these attacks were coordinated with military activity and were observed spikes during major political events, government announcements, and overseas visits by senior officials.

According to the report, four attack methods stood out, the most prevalent one leveraging hardware and software vulnerabilities. Other tactics observed included distributed denial-of-service (DDoS), social engineering attacks, and supply-chain incidents.

Regarding activity targeting the energy sector specifically, this involved targeting industrial control systems and monitoring for malware injection opportunities during planned software upgrades.

"China's cyber army intensively probes into the network equipment and industrial control systems of Taiwan's public-owned and private energy companies, including those in the petroleum, electricity, and natural gas sectors," reads NSB's report.

"In addition, when Taiwan's energy companies carry out software upgrades, Chinese hackers would take the opportunity to implant malware into their systems, so as to keep track of the operational planning of Taiwan's energy sector concerning operational mechanisms, material procurement, and establishment of backup systems."

Attack types
Attack types
Source: nsb.gov.tw

The communications sector was targeted via adversary-in-the-middle (AitM) attacks and persistent access via network flaws. Government agencies were targeted in phishing and data theft attacks. The tech sector was targeted in supply-chain and social engineering attacks attempting theft of advanced chip and industrial technologies data.

The NSB attributed the cyber activity to Chinese hacker groups known as BlackTech, Flax Typhoon, Mustang Panda, APT41, and UNC3886.

The agency is cooperating with more than 30 countries that identify China as a major cyber threat and is involved in intelligence sharing and joint investigations on malicious infrastructure.

Wiz

Secrets Security Cheat Sheet: From Sprawl to Control

Whether you're cleaning up old keys or setting guardrails for AI-generated code, this guide helps your team build securely from the start.

Get the cheat sheet and take the guesswork out of secrets management.


文章来源: https://www.bleepingcomputer.com/news/security/taiwan-says-chinas-attacks-on-its-energy-sector-increased-tenfold/
如有侵权请联系:admin#unsafe.sh