
Taiwan’s Ministry of Digital Affairs announced the detection of artificial intelligence-assisted cyber-attacks targeting government agencies that commenced on 20 July. The National Institute of Cyber Security initiated investigative procedures and issued warning notifications to affected entities.
Israeli cybersecurity company Dream reported identifying the intrusion and characterized it as a novel type of breach. According to reports, the attackers deployed open-source AI agents to construct autonomous hacking tools that functioned with coordinated team-like behavior. The investigation revealed that the tool compromised at least 85 government user accounts and extracted over 2,500 personnel records before the attack extended to Taiwan’s nuclear safety agency and multiple energy sector companies.
While Taiwanese authorities did not explicitly attribute the attack to a specific actor, reporting indicated China-linked hackers were suspected. Dream did not assign the attack to a particular group but noted that the presence of Simplified Chinese in internal communications associated with the breach suggested a probable connection to Chinese operators. This incident occurs within the context of escalating cyber threats directed at Taiwan, with the island’s National Security Bureau reporting a 6% increase in Chinese cyber-attacks on critical infrastructure during 2025, averaging 2.63 million attacks daily.
The Taiwanese government characterized the attack as demonstrating clear indicators of overseas origins, employing a hybrid methodology combining manual operations with AI agent-assisted techniques, including tools such as Open Claw. Officials stated that affected units completed remediation efforts and implemented protective guidelines and enhanced system monitoring protocols to identify and prevent future attacks.
Security researcher Cris Thomas cautioned against attributing full autonomy to such AI-assisted operations, noting that human direction remained essential for target selection and objective establishment. The incident reflects broader concerns regarding the escalating threat posed by AI-enabled hacking campaigns, particularly following the public release of advanced AI models capable of rapid reconnaissance and vulnerability identification in recent months.
Article Attribution | Read More at Article Source
Article summary produced by Claude AI