RESEARCH PREVIEW — Attention: Data Spaces may hack the planet.

Asia

Analyse
Primarily a target — 93 received· 57 initiated· 11 responses ·48 countries

This year to date, 121 new cyber operations involving Asia were added to the database: no change compared to the previous period. The number of operations is currently 9% below the long-term year-to-date average. The Intensity of cyber operations involving Asia over this year to date is rising to 3.3, compared with 2.9 in the same elapsed span of the previous year. This is above the all-time average for Asia of 2.4.

Maintained by EuRepoC research analysts · updated 05 Oct 2026
93received initiated57
For this year to date, this region appears chiefly as a target — 93 incidents directed at it, 57 it is linked to initiating.
Source: EuRepoC Global Database as of 05 Oct 2026.
01 / 02

Cyber activity

57 incidents · as actor

Operations EuRepoC links to actors based in Asia, and the international responses they drew.

Cyber incident intensity
Mean3.1/15Moderate
Range 1.0–6.0

Drag the ends of the observed range to narrow intensities.

56 coded incidents · This year to date
Database additions by monthincidents linked to Asia
Bar height shows incidents added during this year to date; select a bar to filter this interval; hover for average intensity.
Most-targeted sectorswhat its operations hit
Its operations concentrate on Government / ministries — 21 of 57 incidents.
By targetwho its operations hit
United States 11incidents avg 3.6 · Moderate South Korea 10incidents avg 2.7 · Moderate India 10incidents avg 2.5 · Moderate Singapore 9incidents avg 3.1 · Moderate Philippines 9incidents avg 3.2 · Moderate Thailand 9incidents avg 3.2 · Moderate Vietnam 9incidents avg 2.9 · Moderate Cambodia 8incidents avg 3.2 · Moderate
Showing 8 of 190
02 / 02

Operations initiated & responses drawn

Unspecified North Korean-Linked Hacker Singapore ·Finance North Korea-Linked Hackers Stole $387 Million from Crypto Platform Bitget in Singapore on 24 September 2026 25 Sep 2026
Incident · Low severity 25 Sep 2026
Unspecified North Korean-Linked Hacker Singapore ·Finance
North Korea-Linked Hackers Stole $387 Million from Crypto Platform Bitget in Singapore on 24 September 2026
APT31 (Wuhan Xiaoruizhi Science and Technology Company, MSS Hubei State Security Department) SGIDUSVN+812 countries ·Government / ministries +5 Four China-Aligned Threat Actors Used BlueMoon Exploits to Compromise Multiple Organisations in the United States and Southeast Asia Between 28 August and September 2026 28 Aug 2026
Incident · Low severity 28 Aug 2026
APT31 (Wuhan Xiaoruizhi Science and Technology Company, MSS Hubei State Security Department) SGIDUSVN+812 countries ·Government / ministries +5
Four China-Aligned Threat Actors Used BlueMoon Exploits to Compromise Multiple Organisations in the United States and Southeast Asia Between 28 August and September 2026
USFederal Bureau of Investigation Nanjing Xinjiuwei Network Technology Com… (China) US Justice Department and FBI Seized Platforms Operated by Chinese State-Sponsored Hackers "QTFY" to Target US Critical Infrastructure, 26 August 2026 Operational action 26 Aug 2026
Operational action 26 Aug 2026
USFederal Bureau of Investigation Nanjing Xinjiuwei Network Technology Com… (China)
US Justice Department and FBI Seized Platforms Operated by Chinese State-Sponsored Hackers "QTFY" to Target US Critical Infrastructure, 26 August 2026
USFederal Bureau of Investigation QTFY/QT/QTCYBER (China) US Federal Bureau of Investigation, National Security Agency, and Cyber National Mission Force Release Joint Advisory Warning of Ongoing Cyber Activity by China-Linked Threat Actor "QTFY", 26 August 2026 Official policy 26 Aug 2026
Official policy 26 Aug 2026
USFederal Bureau of Investigation QTFY/QT/QTCYBER (China)
US Federal Bureau of Investigation, National Security Agency, and Cyber National Mission Force Release Joint Advisory Warning of Ongoing Cyber Activity by China-Linked Threat Actor "QTFY", 26 August 2026
UTA0560 #N/A ·Advocacy / activists (e.g. human rights organizations) Chinese State-Sponsored Threat Actor UTA0560 and State Actor APT31 Exploited Chrome and Windows Zero-Day Vulnerabilities Against Non-Governmental Organisations Before September 2026 1 Aug 2026
Incident · Low severity 1 Aug 2026
UTA0560 #N/A ·Advocacy / activists (e.g. human rights organizations)
Chinese State-Sponsored Threat Actor UTA0560 and State Actor APT31 Exploited Chrome and Windows Zero-Day Vulnerabilities Against Non-Governmental Organisations Before September 2026
(China) Taiwan ·Government / ministries Suspected Chinese Government-Backed Hackers Launched Autonomous AI Attack Against Taiwanese Government Starting 1 July 2026 1 Jul 2026
Incident · Moderate severity 1 Jul 2026
(China) Taiwan ·Government / ministries
Suspected Chinese Government-Backed Hackers Launched Autonomous AI Attack Against Taiwanese Government Starting 1 July 2026
ITNational Cybersecurity Agency United States National Cybersecurity Agency (ACN) Italy Published Bulletin on Threat Actor Deploying INFINITERED Malware Against Vulnerable REDCap Servers, 17 June 2026 Technical disclosure 17 Jun 2026
Technical disclosure 17 Jun 2026
ITNational Cybersecurity Agency United States
National Cybersecurity Agency (ACN) Italy Published Bulletin on Threat Actor Deploying INFINITERED Malware Against Vulnerable REDCap Servers, 17 June 2026
Nullsec Philippines Philippines ·Legislative Hacktivist Group Nullsec Philippines Defaced Philippine Senate Website on 10 June 2026 10 Jun 2026
Incident · Low severity 10 Jun 2026
Nullsec Philippines Philippines ·Legislative
Hacktivist Group Nullsec Philippines Defaced Philippine Senate Website on 10 June 2026
Showing the 8 most recent of 61 Open all in advanced search
Search