Taiwan AI agent cyberattack reportedly scanned nuclear safety agency
Dream says a multi-agent campaign compromised Asian government systems; reporting identified Taiwan, but nuclear-agency access is unconfirmed.
By Renata Fuchs · Policy Reporter
· 3 min read
A Taiwan AI agent cyberattack reported by security firm Dream involved compromises of government systems in Asia during four days in July and later scanning of a nuclear safety agency and energy-sector targets. Dream declined to identify the government; the Financial Times and subsequent reporting identified Taiwan. The evidence described so far does not establish that the nuclear safety agency was breached or that nuclear operations were affected.
Dream characterized the operation as “near-autonomous,” saying a framework built with the open-source Hermes and OpenClaw agent systems ran up to eight sub-agents through 12 attack waves between July 1 and July 4. According to the firm’s findings, the agents mapped 21 connected government systems, compromised 85 accounts and extracted more than 2,500 personnel records.
The research is notable less as proof of a fully independent AI attacker than as an example of parallelized offensive work. Dream said the agents divided reconnaissance and intrusion tasks, searched public vulnerability databases and code repositories for target-specific techniques, and adjusted their approach when attempts failed. But the firm also said a system operating at this level requires task-specific tuning, coordination and decision-logic refinement by people.
Was Taiwan’s nuclear safety agency breached?
There is no confirmation in the available reporting that it was. Dream said the campaign expanded to scan a nuclear safety agency, government IT suppliers, a government email system and more than seven energy companies for exposed administration interfaces, configuration errors and vulnerabilities. That describes broader targeting and reconnaissance, not a confirmed compromise of each organization.
The confirmed reported compromises concern the unidentified Asian government target. Dream said the operation’s early access included exposed interfaces and weak authentication flows, followed by password-spraying activity using harvested employee usernames. Those are the firm’s findings, not an independently established root-cause assessment.
For security teams, the episode is a reminder that exposed APIs, authentication configuration and credential controls can be assessed in parallel rather than sequentially. Those controls are part of an enterprise security program, alongside monitoring and incident response. The reported campaign’s capability was its ability to extend reconnaissance across many targets while adapting tactics, not evidence that human operators were absent.
Attribution remains unresolved. Dream did not name a hacking group or establish Chinese government control, though it said operational material pointed to a Chinese-language operator. Other reports described the operators as suspected China-linked, based in part on Simplified Chinese in communications associated with the operation.
Taiwan’s Ministry of Digital Affairs reportedly declined to discuss the specific incident, citing confidentiality, and said events involving government agencies or critical infrastructure are handled under established procedures. The underlying AI model used in the framework has not been identified.
This story draws on original reporting from The Register.