Hackers with apparent ties to several China-based groups like Volt Typhoon are targeting critical infrastructure in Taiwan as part of an ongoing campaign. Researchers at Cisco Talos discovered a malicious campaign that has been active since at least 2023 attempting to establish long-term access to critical infrastructure in Taiwan and steal information. The group behind the campaign, which the researchers tagged as UAT-5918, have tactics, techniques, procedures and victims that overlap with Chinese state-backed groups, including those tracked as Volt Typhoon and Flax Typhoon.
Taiwan critical infrastructure targeted by hackers with possible ties to Volt Typhoon (Jonathan Greig, The Record)
Related articles



