China’s Ministry of State Security (MSS) has issued a stark warning to the public and key institutions about an alarming rise in cyber espionage attacks targeting government agencies, research institutions, and critical infrastructure. The alert was issued via the MSS’s official WeChat account on Wednesday, accompanied by the disclosure of three recent high-profile cyber incidents linked to foreign intelligence operations.
In its statement, the MSS emphasized the growing sophistication of cyber-based espionage and the mounting risks it poses to national security. “Foreign intelligence agencies have increasingly turned to cyber means to conduct espionage activities,” the ministry said, pointing to significant weaknesses in cybersecurity awareness and data protection protocols among affected organizations.
Three Cases Highlight Security Failures
The ministry outlined three recent cases to illustrate the vulnerabilities being exploited:
- Case One: Data Leak at a State Laboratory
An employee, identified only by the surname Wang, reportedly bypassed internal security protocols to store over 1,000 classified documents on his personal, internet-connected computer. According to the MSS, Wang later opened an attachment from an unverified email, unknowingly installing malware that gave foreign agents remote access to his system for three months. The breach resulted in a substantial leak of sensitive and classified data. - Case Two: Phishing Attack at a Government Agency
In another incident, an employee named Zhang fell victim to a phishing email crafted to look like an official planning directive. After clicking a malicious link without proper verification, Zhang inadvertently exposed his login credentials, allowing foreign operatives to gain access to confidential institutional communications. - Case Three: Exploited Vulnerabilities in Outdated Systems
A third case involved a research institute using an outdated office automation (OA) system lacking necessary updates and antivirus defenses. Espionage agents took advantage of these weaknesses to implant malware, leading to the theft and black-market sale of sensitive institutional data.
Call for Vigilance and Cybersecurity Strengthening
The MSS urged individuals and institutions, particularly those in sensitive roles, to enhance their cybersecurity practices. It stressed the importance of adhering strictly to national secrecy laws, which prohibit the handling of classified materials on unauthorized or unsecured devices.
“Clicking unverified links, mishandling emails, or installing unknown software can create direct access channels for foreign espionage,” the ministry warned, calling for robust staff training, regular security updates, and stricter oversight of information systems.
The MSS highlighted the need for regular antivirus software updates and the strengthening of critical information infrastructure. “Cybersecurity software serves as a critical first line of defense,” it stated. “If compromised, systems can be silently infiltrated and exploited by hostile actors.”
Institutions were encouraged to implement proactive counter-espionage measures, including employee education, technical upgrades, and rapid response protocols to detect and neutralize threats.

