Taiwan Says AI-Assisted Hackers Targeted Government Agencies in July
Taiwan's Ministry of Digital Affairs confirmed it detected an unusual wave of overseas cyber-attacks on government systems last month, with attackers using artificial intelligence tools in what officials called a reported first of its kind.

Key points
- Taiwan's Ministry of Digital Affairs detected overseas cyber-attacks on government agencies beginning 20 July 2025.
- Authorities called the attacks "abnormal" and said attackers used artificial intelligence to assist the operation, a reported first of its kind.
- Taiwan's National Institute of Cyber Security issued warning alerts while the investigation was active.
- Suspected China-linked hackers have been named in connection with the incident, though attribution remains reported rather than formally confirmed.
Taiwan has confirmed an overseas cyber-attack last month that officials say used artificial intelligence, the technology that lets computers perform tasks normally requiring human judgement, to sharpen the assault on government networks. Its Ministry of Digital Affairs said monitoring units detected an "abnormal attack" beginning 20 July. The Guardian Technology reported Taiwan's statement, which came a day after separate reports of the suspected breach surfaced.
Our earlier story on 13 August found that AI agents had run a near-fully automated four-day campaign against Taiwan's government systems, stealing credentials and mapping networks, which makes this confirmation feel less like a surprise than an acceleration.
Who is behind this, and why does it matter?
Suspected China-linked hackers have been connected to the attack. Beijing has long been accused of targeting Taiwan's government systems. The incident is being flagged because of how the attackers appear to have used AI tools to conduct or guide the operation: AI can scan for weaknesses, craft convincing fake messages and adapt when defences push back, all faster than a human operator working alone.
What did Taiwan's government actually do?
Its National Institute of Cyber Security issued warning alerts while investigators worked through what had happened. Authorities haven't disclosed which specific agencies were targeted, how many systems were affected, or whether any data was taken.
No ransom demand has been reported. This doesn't look like ransomware, where criminals lock files and demand payment to restore them. The available evidence points toward espionage-style intrusion rather than a criminal money-making operation.
Should ordinary people be worried?
There's no indication that personal data belonging to Taiwanese citizens was the direct target. The attack focused on government agencies rather than banks or consumer services.
When governments start reporting AI-assisted intrusions as a genuine attack category rather than a talking point, it signals a shift that eventually filters down. Agencies in other countries will be watching closely.
If you work for any public-sector organisation, treat unexpected emails asking you to log in somewhere as suspicious, use strong separate passwords for work accounts, and report anything unusual to your IT team without delay.



