FT report says suspected China-linked hackers used autonomous AI agents in Taiwan government breach

FT report says suspected China-linked hackers used autonomous AI agents in Taiwan government breach

N
News Editor
2026-08-13 08:59:47
A group of suspected China-linked hackers used autonomous open-source AI agents to breach multiple Taiwanese government systems in early July, according to a Financial Times report citing research from Israeli cybersecurity firm Dream. The company said the operation is the first government-targeted cyberattack it has seen carried out in an end-to-end autonomous manner. Dream said the attack unfolded over four days and involved as many as eight AI agents operating at the same time. The agents were used to identify targets, study available vulnerabilities, test different intrusion paths, and switch tactics when defenses blocked them. According to the firm, the campaign mapped the network architecture of 21 government systems, compromised at least 85 government user accounts, and stole more than 2,500 personnel records. The reported impact later extended to Taiwan’s nuclear safety regulator and at least seven energy companies. Dream Chief Strategy Officer Amir Becker said AI had previously been used to help human hackers with isolated tasks, but this case stood out because reconnaissance, vulnerability discovery, and intrusion were largely automated. Taiwan’s Ministry of Digital Affairs declined comment on confidentiality grounds, while China did not respond to requests for comment. The report noted that official attribution has not been confirmed.

Suspected China-linked hackers used autonomous open-source AI agents to breach multiple Taiwanese government systems in early July, according to an exclusive report by the Financial Times. Israeli cybersecurity firm Dream, which disclosed the case, described it as the first government-focused cyberattack it has seen carried out in an end-to-end autonomous way.

Attack unfolded over four days

Dream said the operation was concentrated within four days in early July. The attackers deployed as many as eight autonomous AI agents at the same time, with different agents handling target discovery, vulnerability research, attempts across multiple intrusion paths, and changes in method when defenses blocked their progress.

According to the company’s research, the agents mapped the network architecture of 21 government systems. Dream said the campaign eventually compromised at least 85 government user accounts and stole more than 2,500 personnel records. The scope of the intrusion later extended to Taiwan’s nuclear safety authority and at least seven energy companies.

Dream says it had not seen this type of government-targeted attack before

Dream Chief Strategy Officer Amir Becker, previously head of cyber operations in Israel’s elite Unit 8200 signals intelligence organization, said AI had generally been used in the past to help human hackers with isolated tasks. In this case, he said, the chain from reconnaissance to vulnerability discovery to intrusion was handled largely by AI agents.

Becker said he had never previously seen this kind of end-to-end autonomous attack aimed at a government target. He added that governments now need to assume they are under constant cyberattack. In his view, operations that once required a full team and substantial manpower may now be compressed into software that runs on its own.

Taiwan declined comment, China did not respond

Taiwan’s Ministry of Digital Affairs declined to comment on the incident, citing confidentiality. The report also said China did not respond to requests for comment.

The report noted that the assessment that the attack was linked to China currently comes from cybersecurity research and the Financial Times report, and that official attribution has not been confirmed.

The ABMedia item said the report was compiled by TechNews based on the Financial Times coverage.

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
430

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.