taiwan
Image: Adam Jang / Unsplash

China accuses Taiwan-linked group of cyberattack on local tech company

Chinese authorities have accused a hacker group allegedly backed by Taiwan of carrying out a cyberattack on a local technology company and targeting sensitive infrastructure across the mainland, state media reported.

According to police in Guangzhou, the group — allegedly linked to Taiwan’s ruling Democratic Progressive Party (DPP) — has targeted more than 1,000 key networks in over 10 Chinese provinces, including military, energy, transportation and government systems.

Authorities said the campaign involved large-scale espionage efforts, crude hacking tools and a range of low-sophistication tactics such as phishing emails, exploitation of known software vulnerabilities and brute-force password attacks.

The attacks were described as “malicious sabotage” aimed at undermining China’s security, police said, adding that the group’s activity had significantly increased over the past year.

Investigators said the group used poorly-coded, self-developed Trojan programs that left digital traces enabling reverse tracking. Authorities added that the attackers attempted to obscure their origin by routing attacks through VPNs, foreign cloud services and compromised devices across multiple countries.

While Beijing did not name the targeted tech company or the hacker group, it said the group had been active in recent years and that its actions were being closely monitored by Chinese cybersecurity agencies.

Taiwan’s National Security Bureau has denied the allegations. In a statement to Reuters, it accused the Chinese Communist Party of “manipulating inaccurate information to confuse the outside world” and shift blame. The bureau said Beijing has long been involved in cyberattacks on Taiwan, including data theft, disinformation campaigns and attempts to sow division through cognitive warfare.

Taiwan and China’s complex and tense relationship — rooted in Beijing’s claim over the self-governing island — often extends into the cyber realm.

In a recent report, Taiwanese security officials said Chinese hackers were behind most of the cyberattacks targeting the island.

China, in turn, accused Taiwan of conducting cyber operations against the mainland and has recently begun publicly identifying alleged threat actors behind the attacks.

Earlier in March, Chinese authorities accused four individuals allegedly linked to Taiwan’s military of conducting cyberattacks and espionage against the country.

While naming foreign hackers is common practice among some Western cybersecurity firms, the move marks a new development in China’s cyber attribution efforts.

Get more insights with the
Recorded Future
Intelligence Cloud.
Learn more.
Recorded Future
No previous article
No new articles
Daryna Antoniuk

Daryna Antoniuk

is a reporter for Recorded Future News based in Ukraine. She writes about cybersecurity startups, cyberattacks in Eastern Europe and the state of the cyberwar between Ukraine and Russia. She previously was a tech reporter for Forbes Ukraine. Her work has also been published at Sifted, The Kyiv Independent and The Kyiv Post.