Topic Collection / Public Records
Taiwan Public Cyber Signals
Taiwan listed-company cyber disclosures, government cybersecurity procurement notices, TWCERT/CC vulnerability notes, and guarded TWCERT/CC security-news warnings, normalized into a searchable public signal collection for security, cloud, governance, and operations teams.
Server-Rendered Database Proof
Taiwan records are counted before browser hydration.
This collection renders database totals, source-family counts, freshness, and export links from the public summary first. The browser then loads a capped record list for interactive search.
Summary generated 2026-08-27 06:32. If the record list is still loading, these server-side counts remain the collection baseline.
Source Status
Production Taiwan layer
Taiwan is the reference public-record layer: procurement polling, latest MOPS polling, historical MOPS backfill, scheduled TWCERT/CC TVN vulnerability polling, guarded TWCERT/CC security-news warnings, scoring, English fields, capped exports, and public source links are all active.
The database has active monitoring records for this collection. A quiet period means the source did not publish matching records, not that the page is broken.
What this collection covers
Records are treated as monitoring data first. MOPS disclosures help identify public-company cyber incidents, governance updates, and material operational disruption. Taiwan government procurement notices help surface security spending, SOC/SIEM/EDR activity, identity projects, audits, and critical-infrastructure resilience work. TWCERT/CC TVN rows add CVE, CVSS, affected-product, and vendor context for Taiwan vulnerability monitoring. Guarded TWCERT/CC security-news rows add official Taiwan CERT warnings only when detail review and overlap checks show distinct operational value.
How to cite it
Nogosee Intelligence, Taiwan Public Cyber Signals. Accessed 2026-08-27. Dataset page: https://nogosee.com/taiwan-public-cyber-signals/. Raw scored export: CSV.
Enterprise Handoff
Turn this public slice into a monitored workflow
Start with capped public records for Taiwan Public Cyber Signals, then request the minimum private access needed for repeat review, team routing, or historical analysis.
Evaluate The Slice
Open the tracker preset and capped CSV first, then request a bounded evaluation export only if the public view fits your review queue.
Open tracker presetDownload capped CSVRequest evaluation exportAutomate Monitoring
Use the public RSS feed for lightweight follow-up, or request recurring feed/API access for SIEM, vendor-risk, and internal dashboard workflows.
Open RSS feedRequest recurring feedRequest API integrationScope Team Access
Ask for historical export or custom monitoring when a team needs country, sector, source-family, entity, or threat-theme coverage beyond public caps.
Request historical exportRequest team monitoring setupPublic pages prove workflow fit without exposing private source baskets, full historical archives, scoring weights, matching logic, prompts, or anti-abuse controls.
Start with a workflow
Use these entry points to narrow the public-record database before opening individual source records. The same pattern can later support Japan, Korea, Thailand, Singapore, and other regional layers.
24 rendered records. Full dataset currently reports 662 records.
Highest-priority signals
Network security procurement signal
Original: 本公司部份資訊系統遭受網路安全事件說明
Company: 貿聯-KY (3665) | MOPS material information at 2026-08-24 06:49:26 Asia/Taipei
Published 2026-08-23 / Taiwan MOPS disclosures / 貿聯-KY (3665) / governmentCompany cybersecurity incident statement
Original: 本公司網路資安事件說明
Company: 數字 (5287) | MOPS material information at 2026-08-20 18:05:38 Asia/Taipei
Published 2026-08-20 / Taiwan MOPS disclosures / 數字 (5287) / public-sector-and-listed-company-riskInformation security public signal
Original: 115年度資通安全事件應變演練服務
無法決標公告
Fetched 2026-08-19 / Taiwan government procurement / Bank of Taiwan / finance思考軟體科技|EFence - 存在3個漏洞
EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.EFence dev...
Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / enterprise-softwareThinking Software Technology|EFence, Efence - 3 Vulnerabilities
【CVE-2026-80235(Arbitrary File Upload)】 Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. 【CVE-2026-80236(SQL Injection)】 Unauthenticated remote attackers can access file upload functionality and read database contents. 【CVE-2026-80237(Arbitrary File Upload)】 Authenticated remote attackers can upload and execute web shell backdoors...
Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / enterprise-softwareCAYIN Technology|CAYIN CMS-WS/CMS-SE - Missing Authentication
CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.
Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / taiwan-vulnerability-disclosureSearchable records
Network security procurement signal
Original: 本公司部份資訊系統遭受網路安全事件說明
Company: 貿聯-KY (3665) | MOPS material information at 2026-08-24 06:49:26 Asia/Taipei
- Entity
- Taiwan organization (3665) / 貿聯-KY (3665)
- Sector
- government
- Scoring reasons
- incident-disclosure, incident-keyword:資訊系統遭受, mops-material-information, fresh-within-7-days
Company cybersecurity incident statement
Original: 本公司網路資安事件說明
Company: 數字 (5287) | MOPS material information at 2026-08-20 18:05:38 Asia/Taipei
- Entity
- Taiwan organization (5287) / 數字 (5287)
- Sector
- public-sector-and-listed-company-risk
- Scoring reasons
- incident-disclosure, incident-keyword:網路資安事件, mops-material-information, fresh-within-7-days
No-award notice: Information security public signal
Original: 115年度資通安全事件應變演練服務
無法決標公告
- Entity
- Bank of Taiwan / 臺灣銀行股份有限公司
- Sector
- finance
- Notice stage
- No-award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, threat-specific-procurement:資通安全事件, critical-infrastructure-context
思考軟體科技|EFence - 存在3個漏洞
EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.EFence dev...
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
Thinking Software Technology|EFence, Efence - 3 Vulnerabilities
【CVE-2026-80235(Arbitrary File Upload)】 Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. 【CVE-2026-80236(SQL Injection)】 Unauthenticated remote attackers can access file upload functionality and read database contents. 【CVE-2026-80237(Arbitrary File Upload)】 Authenticated remote attackers can upload and execute web shell backdoors...
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
CAYIN Technology|CAYIN CMS-WS/CMS-SE - Missing Authentication
CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.
- Entity
- TWCERT/CC
- Sector
- taiwan-vulnerability-disclosure
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
CAYIN Technology|CAYIN CMS-WS/CMS-SE/SMP - Arbitrary File Upload
CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shells backdoors, thereby enabling arbitrary code execution on the server.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
Le-yan|Medical Practice Management System - Remote Code Execution
Medical Practice Management System developed by Le-yan has a Remote Code Execution vulnerability. Unauthenticated remote attackers can execute arbitrary OS commamnds via a crafted HTML page.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
Hepta Platforms|Heptabase - Stored Cross-Site Scripting
Heptabase developed by Hepta Platforms, Inc. has a Stored Cross-Site Scripting vulnerability. Authenticated remote attackers can inject persistent malicious content into specific pages, causing arbitrary JavaScript code to execute when other users click the crafted content.
- Entity
- TWCERT/CC
- Sector
- taiwan-vulnerability-disclosure
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
4MOSAn Security Technology|4MOSAn Management Center - Arbitrary File Read
4MOSAn developed by 4MOSAn Security Technology Co., Ltd. has an Arbitrary File Read vulnerability. Unauthenticated remote attackers can exploit a Relative Path Traversal flaw to download arbitrary system files.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
4MOSAn Security Technology|4MOSAn GCB Doctor - OS Command Injection
4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenticated remote attackers can inject malicious commands through an unremoved ADOdb test page parameter, thereby executing arbitrary system commands on the server.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
CyberTutor|NewSiteServer (NSS) - Missing Authentication
NewSiteServer (NSS) developed by CyberTutor has a Missing Authentication vulnerability. Unauthenticated remote attackers can exploit a specific functionality to send emails to anyone on behalf of the school.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
CyberTutor|NewSiteServer (NSS) - Arbitrary File Upload
NewSiteServer (NSS) developed by CyberTutor has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload arbitrary files, including malicious HTML files, thereby achieving effects similar to cross-site scripting.
- Entity
- TWCERT/CC
- Sector
- enterprise-software
- Scoring reasons
- public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
Award notice: SIEM and log-management procurement signal
Original: SIEM更新(Arcsight Express 事件關聯紀錄管理套件)
決標公告 | Companies: 宏碁資訊服務股份有限公司
- Entity
- Taiwan healthcare organization / 高雄榮民總醫院
- Sector
- technology-manufacturing
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: SIEM and log-management procurement signal
Original: 「SIEM稽核日誌管理平台」軟體授權及硬體維護
決標公告 | Companies: 敦陽科技股份有限公司 (STARK TECHNOLOGY INC.)
- Entity
- Taiwan healthcare organization / 國立成功大學醫學院附設醫院
- Sector
- healthcare
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
No-award notice: SOC and threat-detection procurement signal
Original: 115及116年SOC及資通安全監控與管理服務
無法決標公告
- Entity
- Taiwan company / 國營臺灣鐵路股份有限公司
- Sector
- critical-infrastructure-transport
- Notice stage
- No-award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: SOC and threat-detection procurement signal
Original: 雲林縣政府115年資安資訊分享與分析中心 (ISAC)暨資通安全威脅偵測管理服務(SOC)案
決標公告 | Companies: 中華電信股份有限公司企業客戶分公司
- Entity
- Taiwan public-sector agency / 雲林縣政府
- Sector
- telecom
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Endpoint detection and response procurement signal
Original: 115-116年資通安全監控管理暨端點偵測及應變託管服務
決標公告 | Companies: 中華資安國際股份有限公司 (CHT Security Co., Ltd.), 數聯資安股份有限公司 (Information Security Service Digital United Inc.)
- Entity
- Taiwan company / 臺灣港務股份有限公司
- Sector
- critical-infrastructure-transport
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Information-security management system procurement signal
Original: 115年資訊安全管理系統輔導及滲透測試案
決標公告 | Companies: 聯準科技股份有限公司, 創逸科技服務有限公司
- Entity
- Taiwan public-sector agency / 臺北市政府工務局水利工程處
- Sector
- critical-infrastructure-water
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Penetration testing procurement signal
Original: 臺灣土地銀行紐約分行滲透測試
決標公告 | Companies: BERNERS TECHNOLOGY LLC
- Entity
- Taiwan bank / 臺灣土地銀行股份有限公司
- Sector
- finance
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Penetration testing procurement signal
Original: 本公司對外網站資安滲透測試案
決標公告 | Companies: 宏碁資訊服務股份有限公司 (ACER E-ENABLING SERVICE BUSINESS INC.)
- Entity
- Taiwan company / 台灣自來水股份有限公司
- Sector
- technology-manufacturing
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
No-award notice: Penetration testing procurement signal
Original: Swift滲透測試
無法決標公告
- Entity
- Taiwan bank / 臺灣土地銀行股份有限公司
- Sector
- finance
- Notice stage
- No-award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Vulnerability scanning procurement signal
Original: 弱點掃描管理平台授權案
決標公告 | Companies: 中華資安國際股份有限公司 (CHT Security Co.,Ltd.), 訊揚科技有限公司
- Entity
- Taiwan healthcare organization / 國立臺灣大學醫學院附設醫院
- Sector
- healthcare
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
Award notice: Vulnerability scanning procurement signal
Original: 網站弱點掃描工具
決標公告 | Companies: 精誠資訊股份有限公司 (Systex Corporation)
- Entity
- Taiwan healthcare organization / 高雄榮民總醫院
- Sector
- healthcare
- Notice stage
- Award notice
- Scoring reasons
- critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result