Military & Security

Taiwanese cybersecurity firm warns that AI tools have more than doubled Chinese state-backed cyberattacks

· August 25, 2026
Taiwanese cybersecurity firm warns that AI tools have more than doubled Chinese state-backed cyberattacks

What happened

Chinese state-backed hacking groups have more than doubled their cyberattacks since adopting AI tools for offensive operations. Taiwanese cybersecurity firm TeamT5 reports that these groups are using AI models like DeepSeek to automate writing exploit code and scanning target networks. In addition to DeepSeek, attackers have employed ChatGPT and Anthropic’s Claude Code as part of their attack arsenals. A UK study confirms that open AI models are rapidly closing the gap on traditional cyber offense capabilities, making AI-powered attacks significantly more accessible.

The risk

The use of AI in cyberattacks accelerates the speed and scale at which state-backed hackers probe vulnerabilities and develop exploits. AI models automate what used to require substantial human expertise and manual effort. This lowers the barrier for launching sophisticated attacks and increases the volume of attempts, overwhelming traditional detection systems. As a result, targeted organizations face a higher frequency of attacks that are harder to predict and defend against.

Why it matters

Businesses, network operators, and security teams must prepare for a significant uptick in AI-driven attacks originating from well-resourced adversaries. Traditional cybersecurity defenses risk falling behind unless they adopt AI-based detection and response measures that can keep pace with automated probing tools. The growing AI capabilities in exploit development raise the cost of trust and increase the urgency for proactive vulnerability management. For investors and board members, this shift means cyber risk exposure is rising sharply in industries of strategic interest to Chinese state actors.

Who should pay attention

Security professionals defending critical infrastructure, finance, and high-value IP environments must prioritize integrating AI threat intelligence and automated defense capabilities. CISO and risk officers should factor in the speed and scale of AI-augmented Chinese state hacking when refining budgets and mitigation strategies. Regulators and policymakers need to consider accelerating standards for AI threat monitoring and cross-sector collaboration to counter the rapid escalation of AI in cyber warfare.

What to watch next

Monitor developments in AI tooling for cyber defense, including how vendors incorporate AI to automate detection of AI-driven exploits. Watch for evolving tactics from Chinese groups as they refine AI use to evade anomaly detection and weaponize increasingly advanced open models. Pay attention to regulatory moves addressing AI-enabled cyber threats and how the global market shifts in response to this intensified cyber arms race. Enterprises that integrate AI defensively early will hold an advantage as attack volumes grow.

AI Quick Briefs Editorial Desk

Stay ahead of AI Get the most important AI news delivered to your inbox — free.