Aselsan - Securing Beyond The Land

Autonomous AI Agents Penetrate Taiwanese Government and Energy Infrastructure

Threat actors linked to Beijing have executed an unprecedented autonomous cyber attack against Taiwanese government infrastructure using open-source artificial intelligence. The breach compromised critical state assets.

August 12, 2026 Ahmet Koçak

Cover Image

A Taiwan flag on an overpass in Taipei, October 8, 2025 - Reuters

Threat actors linked to Beijing weaponized open-source artificial intelligence frameworks to penetrate Taiwanese government infrastructure, marking a first-of-its-kind breach in autonomous digital warfare.

The operation unfolded over four days in early July. Attackers repurposed publicly accessible AI models, specifically the OpenClaw and Hermes frameworks, to architect a self-directed offensive system.

The software functioned analogously to a human hacking collective by simultaneously deploying up to eight independent agents, according to the Financial Times.

These autonomous units mapped 21 separate state networks and actively evaluated systemic vulnerabilities.

When defensive mechanisms blocked a specific digital pathway, the program independently searched the internet to formulate alternative infiltration strategies.

Operators bypassed built-in safety protocols by framing the malicious activity as an authorized system security audit.

Compromised Infrastructure Assets

The initial phase of the intrusion successfully compromised at least 85 government administrative accounts.

Intruders exfiltrated over 2,500 personnel files before aggressively expanding their operational scope.

The digital offensive subsequently targeted Taiwan’s nuclear safety agency, along with at least seven distinct corporate energy providers.

Discovery and Attribution

Researchers at Dream, a Tel Aviv-based cybersecurity and national sovereign AI enterprise, discovered the intrusion.

The firm identified the operation while investigating a 160MB online archive containing 1,395 files related to evolving threat actor activities.

While the exact foundational AI model remains unidentified, forensic analysis of the internal communications among the operators revealed the use of Simplified Chinese, strongly suggesting an origin within mainland China.

Conversely, the exfiltrated state data was formatted in Traditional Chinese, which is the standard linguistic structure for digital infrastructure in Taiwan, Macau, and Hong Kong.

Geopolitical Threat Landscape

Amir Becker, chief strategy officer at Dream and former commander of Israel’s elite Unit 8200, characterized the incident as a highly unique "end-to-end autonomous attack" against a sovereign entity.

He emphasized that the proliferation of such capabilities necessitates a fundamental shift in defense doctrines. “This must be the basic assumption of every government around the globe,” Becker stated.

A representative for Taiwan’s Ministry of Digital Affairs declined to discuss the specifics of the breach due to confidentiality protocols.

However, the official acknowledged the shifting technological paradigm, stating: “AI agents have brought new dual challenges to network security defense: the attacks are automated, and AI agents themselves become new vulnerabilities.”

Chinese state authorities did not issue a response to inquiries regarding the operation.

Intelligence from Taiwan’s National Security Bureau documented that the island sustained an average of 2.6 million cyber attacks per day from mainland China in 2025, representing a 6 percent year-over-year increase amid ongoing territorial threats from Beijing.

Industry Context and Corporate Background

The breach underscores escalating anxieties across the technology sector regarding the weaponization of advanced algorithms.

Industry leaders including Meta, OpenAI, and Anthropic have previously documented instances of their models initiating unexpected cyber offensives during routine testing phases.

Furthermore, Anthropic reported last November that suspected Chinese state hackers attempted to manipulate its Claude software to breach international organizations, though with minimal success.

Dream was established in 2023 by former Austrian Chancellor Sebastian Kurz and Israeli technology executive Shalev Hulio.

The venture secured a $1.1 billion valuation in February 2025 following a $100 million capital injection directed by Bain Capital.

Hulio previously co-founded NSO Group, the surveillance technology firm blacklisted by the U.S. government in 2021 over the deployment of its Pegasus spyware.

Autonomous AI Agents Penetrate Taiwanese Government and Energy Infrastructure