RESEARCH PREVIEW — Attention: Data Spaces may hack the planet.

Asia

Analyse
Primarily a target — 25 received· 7 initiated· 2 responses ·48 countries

In the last 60 days, 28 new cyber operations involving Asia were added to the database: a 7% decrease compared to the previous period. The number of operations is currently 1% below the long-term 60-day average. The Intensity of cyber operations involving Asia over the last 60 days is rising to 3.3, compared with 3.2 in the preceding 60-day period. This is above the all-time average for Asia of 2.4.

Maintained by EuRepoC research analysts · updated 05 Oct 2026
25received initiated7
For last 60 days, this region appears chiefly as a target — 25 incidents directed at it, 7 it is linked to initiating.
Source: EuRepoC Global Database as of 05 Oct 2026.
01 / 02

Cyber activity

7 incidents · as actor

Operations EuRepoC links to actors based in Asia, and the international responses they drew.

Cyber incident intensity
Mean3.4/15Moderate
Range 2.0–6.0

Drag the ends of the observed range to narrow intensities.

7 coded incidents · Last 60 days
Database additions by weekincidents linked to Asia
Bar height shows incidents added during last 60 days; select a bar to filter this interval; hover for average intensity.
Most-targeted sectorswhat its operations hit
Its operations concentrate on Government / ministries — 4 of 7 incidents.
02 / 02

Operations initiated & responses drawn

Unspecified North Korean-Linked Hacker Singapore ·Finance North Korea-Linked Hackers Stole $387 Million from Crypto Platform Bitget in Singapore on 24 September 2026 25 Sep 2026
Incident · Low severity 25 Sep 2026
Unspecified North Korean-Linked Hacker Singapore ·Finance
North Korea-Linked Hackers Stole $387 Million from Crypto Platform Bitget in Singapore on 24 September 2026
APT31 (Wuhan Xiaoruizhi Science and Technology Company, MSS Hubei State Security Department) SGIDUSVN+812 countries ·Government / ministries +5 Four China-Aligned Threat Actors Used BlueMoon Exploits to Compromise Multiple Organisations in the United States and Southeast Asia Between 28 August and September 2026 28 Aug 2026
Incident · Low severity 28 Aug 2026
APT31 (Wuhan Xiaoruizhi Science and Technology Company, MSS Hubei State Security Department) SGIDUSVN+812 countries ·Government / ministries +5
Four China-Aligned Threat Actors Used BlueMoon Exploits to Compromise Multiple Organisations in the United States and Southeast Asia Between 28 August and September 2026
USFederal Bureau of Investigation Nanjing Xinjiuwei Network Technology Com… (China) US Justice Department and FBI Seized Platforms Operated by Chinese State-Sponsored Hackers "QTFY" to Target US Critical Infrastructure, 26 August 2026 Operational action 26 Aug 2026
Operational action 26 Aug 2026
USFederal Bureau of Investigation Nanjing Xinjiuwei Network Technology Com… (China)
US Justice Department and FBI Seized Platforms Operated by Chinese State-Sponsored Hackers "QTFY" to Target US Critical Infrastructure, 26 August 2026
USFederal Bureau of Investigation QTFY/QT/QTCYBER (China) US Federal Bureau of Investigation, National Security Agency, and Cyber National Mission Force Release Joint Advisory Warning of Ongoing Cyber Activity by China-Linked Threat Actor "QTFY", 26 August 2026 Official policy 26 Aug 2026
Official policy 26 Aug 2026
USFederal Bureau of Investigation QTFY/QT/QTCYBER (China)
US Federal Bureau of Investigation, National Security Agency, and Cyber National Mission Force Release Joint Advisory Warning of Ongoing Cyber Activity by China-Linked Threat Actor "QTFY", 26 August 2026
UTA0560 #N/A ·Advocacy / activists (e.g. human rights organizations) Chinese State-Sponsored Threat Actor UTA0560 and State Actor APT31 Exploited Chrome and Windows Zero-Day Vulnerabilities Against Non-Governmental Organisations Before September 2026 1 Aug 2026
Incident · Low severity 1 Aug 2026
UTA0560 #N/A ·Advocacy / activists (e.g. human rights organizations)
Chinese State-Sponsored Threat Actor UTA0560 and State Actor APT31 Exploited Chrome and Windows Zero-Day Vulnerabilities Against Non-Governmental Organisations Before September 2026
(China) Taiwan ·Government / ministries Suspected Chinese Government-Backed Hackers Launched Autonomous AI Attack Against Taiwanese Government Starting 1 July 2026 1 Jul 2026
Incident · Moderate severity 1 Jul 2026
(China) Taiwan ·Government / ministries
Suspected Chinese Government-Backed Hackers Launched Autonomous AI Attack Against Taiwanese Government Starting 1 July 2026
Salt Typhoon (Sichuan Juxinhe Network Technology Co., LTD., Beijing Huanyu Tianqiong Information Technology Co., Ltd., Sichuan Zhixin Ruijie Network Technology Co., Ltd.) ECPAARVE+48 countries ·Government / ministries +1 China-Aligned APT Group FamousSparrow Deployed Backdoor SparroWocky on Government Entities And Telecommunications Organisation in Latin America and Puerto Rico since July 2025 1 Jul 2025
Incident · Low severity 1 Jul 2025
Salt Typhoon (Sichuan Juxinhe Network Technology Co., LTD., Beijing Huanyu Tianqiong Information Technology Co., Ltd., Sichuan Zhixin Ruijie Network Technology Co., Ltd.) ECPAARVE+48 countries ·Government / ministries +1
China-Aligned APT Group FamousSparrow Deployed Backdoor SparroWocky on Government Entities And Telecommunications Organisation in Latin America and Puerto Rico since July 2025
(North Korea) Korea, Republic of ·Critical Manufacturing +1 North Korean State-Affiliated Hacking Group Deployed New Linux Toolkit To Target South Korean Organisations In Automotive And Media Industries In South Korea On 07 September 2026 1 Jan 2025
Incident · Low severity 1 Jan 2025
(North Korea) Korea, Republic of ·Critical Manufacturing +1
North Korean State-Affiliated Hacking Group Deployed New Linux Toolkit To Target South Korean Organisations In Automotive And Media Industries In South Korea On 07 September 2026
Showing the 8 most recent of 9 Open all in advanced search
Search