Taiwan Public Cyber Signals

Topic Collection / Public Records

Taiwan Public Cyber Signals

Taiwan listed-company cyber disclosures, government cybersecurity procurement notices, TWCERT/CC vulnerability notes, and guarded TWCERT/CC security-news warnings, normalized into a searchable public signal collection for security, cloud, governance, and operations teams.

662Public records
218Incidents
256Procurement
52Vulnerabilities
5CERT warnings
115Critical infra

Server-Rendered Database Proof

Taiwan records are counted before browser hydration.

This collection renders database totals, source-family counts, freshness, and export links from the public summary first. The browser then loads a capped record list for interactive search.

Taiwan records660Active public rows in this collection
Active sources4/4Configured source families with records
Added / seen in 24h20Latest 2026-08-27 08:57

Summary generated 2026-08-27 08:59. If the record list is still loading, these server-side counts remain the collection baseline.

Source Status

Production Taiwan layer

Taiwan is the reference public-record layer: procurement polling, latest MOPS polling, historical MOPS backfill, scheduled TWCERT/CC TVN vulnerability polling, guarded TWCERT/CC security-news warnings, scoring, English fields, capped exports, and public source links are all active.

The database has active monitoring records for this collection. A quiet period means the source did not publish matching records, not that the page is broken.

StatusActive source layer
Records in layer660
Source families4/4
All public layers 24h20
Latest database activity2026-08-27 08:57
Status generated2026-08-27 08:59

What this collection covers

Records are treated as monitoring data first. MOPS disclosures help identify public-company cyber incidents, governance updates, and material operational disruption. Taiwan government procurement notices help surface security spending, SOC/SIEM/EDR activity, identity projects, audits, and critical-infrastructure resilience work. TWCERT/CC TVN rows add CVE, CVSS, affected-product, and vendor context for Taiwan vulnerability monitoring. Guarded TWCERT/CC security-news rows add official Taiwan CERT warnings only when detail review and overlap checks show distinct operational value.

Next Analyst Paths

Continue the workflow

Move from one collection into nearby country, topic, freshness, or commercial-access views without returning to the homepage.

Enterprise Handoff

Turn this public slice into a monitored workflow

Start with capped public records for Taiwan Public Cyber Signals, then request the minimum private access needed for repeat review, team routing, or historical analysis.

Public pages prove workflow fit without exposing private source baskets, full historical archives, scoring weights, matching logic, prompts, or anti-abuse controls.

Start with a workflow

Use these entry points to narrow the public-record database before opening individual source records. The same pattern can later support Japan, Korea, Thailand, Singapore, and other regional layers.

24 rendered records. Full dataset currently reports 662 records.

Highest-priority signals

Score 100 / Incident

Network security procurement signal

Original: 本公司部份資訊系統遭受網路安全事件說明

Company: 貿聯-KY (3665) | MOPS material information at 2026-08-24 06:49:26 Asia/Taipei

Published 2026-08-23 / Taiwan MOPS disclosures / 貿聯-KY (3665) / government
Score 100 / Incident

Company cybersecurity incident statement

Original: 本公司網路資安事件說明

Company: 數字 (5287) | MOPS material information at 2026-08-20 18:05:38 Asia/Taipei

Published 2026-08-20 / Taiwan MOPS disclosures / 數字 (5287) / public-sector-and-listed-company-risk
Score 90 / Critical Infra

Information security public signal

Original: 115年度資通安全事件應變演練服務

無法決標公告

Fetched 2026-08-19 / Taiwan government procurement / Bank of Taiwan / finance
Score 80 / Governance

思考軟體科技|EFence - 存在3個漏洞

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.EFence dev...

Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / enterprise-software
Score 80 / Governance

Thinking Software Technology|EFence, Efence - 3 Vulnerabilities

【CVE-2026-80235(Arbitrary File Upload)】 Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. 【CVE-2026-80236(SQL Injection)】 Unauthenticated remote attackers can access file upload functionality and read database contents. 【CVE-2026-80237(Arbitrary File Upload)】 Authenticated remote attackers can upload and execute web shell backdoors...

Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / enterprise-software
Score 80 / Governance

CAYIN Technology|CAYIN CMS-WS/CMS-SE - Missing Authentication

CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.

Published 2026-08-26 / TWCERT/CC TVN vulnerabilities / TWCERT/CC / taiwan-vulnerability-disclosure

Searchable records

100score

2026-08-23 / Incident / Taiwan MOPS disclosures

Network security procurement signal

Original: 本公司部份資訊系統遭受網路安全事件說明

Company: 貿聯-KY (3665) | MOPS material information at 2026-08-24 06:49:26 Asia/Taipei

Entity
Taiwan organization (3665) / 貿聯-KY (3665)
Sector
government
Scoring reasons
incident-disclosure, incident-keyword:資訊系統遭受, mops-material-information, fresh-within-7-days
mops-material-informationlisted-company-riskcyber-disclosuremops-cyber-material-eventgovernment網路安全資訊系統資訊系統遭受
100score

2026-08-20 / Incident / Taiwan MOPS disclosures

Company cybersecurity incident statement

Original: 本公司網路資安事件說明

Company: 數字 (5287) | MOPS material information at 2026-08-20 18:05:38 Asia/Taipei

Entity
Taiwan organization (5287) / 數字 (5287)
Sector
public-sector-and-listed-company-risk
Scoring reasons
incident-disclosure, incident-keyword:網路資安事件, mops-material-information, fresh-within-7-days
mops-material-informationlisted-company-riskcyber-disclosuremops-cyber-material-eventpublic-sector-and-listed-company-risk資安資安事件
90score

2026-08-19 / Critical Infra / No-award notice / Taiwan government procurement

No-award notice: Information security public signal

Original: 115年度資通安全事件應變演練服務

無法決標公告

Entity
Bank of Taiwan / 臺灣銀行股份有限公司
Sector
finance
Notice stage
No-award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, threat-specific-procurement:資通安全事件, critical-infrastructure-context
procurement-security-awardfinance資通安全資通安全事件應變
80score

2026-08-26 / Governance / TWCERT/CC TVN vulnerabilities

思考軟體科技|EFence - 存在3個漏洞

EFence developed by Thinking Software Technology has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.Efence developed by Thinking Software Technology has a SQL Injection vulnerability. Unauthenticated remote attackers can access file upload functionality and read database contents.EFence dev...

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-80235CVE-2026-80236CVE-2026-80237
80score

2026-08-26 / Governance / TWCERT/CC TVN vulnerabilities

Thinking Software Technology|EFence, Efence - 3 Vulnerabilities

【CVE-2026-80235(Arbitrary File Upload)】 Unauthenticated remote attackers can upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. 【CVE-2026-80236(SQL Injection)】 Unauthenticated remote attackers can access file upload functionality and read database contents. 【CVE-2026-80237(Arbitrary File Upload)】 Authenticated remote attackers can upload and execute web shell backdoors...

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-80235CVE-2026-80236CVE-2026-80237
80score

2026-08-26 / Governance / TWCERT/CC TVN vulnerabilities

CAYIN Technology|CAYIN CMS-WS/CMS-SE - Missing Authentication

CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.

Entity
TWCERT/CC
Sector
taiwan-vulnerability-disclosure
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-80234access-control
80score

2026-08-26 / Governance / TWCERT/CC TVN vulnerabilities

CAYIN Technology|CAYIN CMS-WS/CMS-SE/SMP - Arbitrary File Upload

CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shells backdoors, thereby enabling arbitrary code execution on the server.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-80233file-upload
80score

2026-08-25 / Governance / TWCERT/CC TVN vulnerabilities

Le-yan|Medical Practice Management System - Remote Code Execution

Medical Practice Management System developed by Le-yan has a Remote Code Execution vulnerability. Unauthenticated remote attackers can execute arbitrary OS commamnds via a crafted HTML page.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-78685
80score

2026-08-24 / Governance / TWCERT/CC TVN vulnerabilities

Hepta Platforms|Heptabase - Stored Cross-Site Scripting

Heptabase developed by Hepta Platforms, Inc. has a Stored Cross-Site Scripting vulnerability. Authenticated remote attackers can inject persistent malicious content into specific pages, causing arbitrary JavaScript code to execute when other users click the crafted content.

Entity
TWCERT/CC
Sector
taiwan-vulnerability-disclosure
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-78213
80score

2026-08-24 / Governance / TWCERT/CC TVN vulnerabilities

4MOSAn Security Technology|4MOSAn Management Center - Arbitrary File Read

4MOSAn developed by 4MOSAn Security Technology Co., Ltd. has an Arbitrary File Read vulnerability. Unauthenticated remote attackers can exploit a Relative Path Traversal flaw to download arbitrary system files.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-78212file-upload
80score

2026-08-24 / Governance / TWCERT/CC TVN vulnerabilities

4MOSAn Security Technology|4MOSAn GCB Doctor - OS Command Injection

4MOSAn GCB Doctor developed by 4MOSAn Security Technology has a OS Command Injection vulnerability. Unauthenticated remote attackers can inject malicious commands through an unremoved ADOdb test page parameter, thereby executing arbitrary system commands on the server.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-78211command-injection
80score

2026-08-24 / Governance / TWCERT/CC TVN vulnerabilities

CyberTutor|NewSiteServer (NSS) - Missing Authentication

NewSiteServer (NSS) developed by CyberTutor has a Missing Authentication vulnerability. Unauthenticated remote attackers can exploit a specific functionality to send emails to anyone on behalf of the school.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-19853access-control
80score

2026-08-24 / Governance / TWCERT/CC TVN vulnerabilities

CyberTutor|NewSiteServer (NSS) - Arbitrary File Upload

NewSiteServer (NSS) developed by CyberTutor has an Arbitrary File Upload vulnerability. Unauthenticated remote attackers can upload arbitrary files, including malicious HTML files, thereby achieving effects similar to cross-site scripting.

Entity
TWCERT/CC
Sector
enterprise-software
Scoring reasons
public-vulnerability-record, taiwan-twcert-tvn, fresh-within-7-days
taiwantwcert-cctvnvulnerabilitycveCVE-2026-19852file-upload
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: SIEM and log-management procurement signal

Original: SIEM更新(Arcsight Express 事件關聯紀錄管理套件)

決標公告 | Companies: 宏碁資訊服務股份有限公司

Entity
Taiwan healthcare organization / 高雄榮民總醫院
Sector
technology-manufacturing
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardtechnology-manufacturingSIEM宏碁
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: SIEM and log-management procurement signal

Original: 「SIEM稽核日誌管理平台」軟體授權及硬體維護

決標公告 | Companies: 敦陽科技股份有限公司 (STARK TECHNOLOGY INC.)

Entity
Taiwan healthcare organization / 國立成功大學醫學院附設醫院
Sector
healthcare
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardhealthcareSIEM
80score

2026-08-19 / Critical Infra / No-award notice / Taiwan government procurement

No-award notice: SOC and threat-detection procurement signal

Original: 115及116年SOC及資通安全監控與管理服務

無法決標公告

Entity
Taiwan company / 國營臺灣鐵路股份有限公司
Sector
critical-infrastructure-transport
Notice stage
No-award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardcritical-infrastructure-transport資通安全SOC臺灣鐵路
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: SOC and threat-detection procurement signal

Original: 雲林縣政府115年資安資訊分享與分析中心 (ISAC)暨資通安全威脅偵測管理服務(SOC)案

決標公告 | Companies: 中華電信股份有限公司企業客戶分公司

Entity
Taiwan public-sector agency / 雲林縣政府
Sector
telecom
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardtelecom資安資通安全SOC中華電信
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Endpoint detection and response procurement signal

Original: 115-116年資通安全監控管理暨端點偵測及應變託管服務

決標公告 | Companies: 中華資安國際股份有限公司 (CHT Security Co., Ltd.), 數聯資安股份有限公司 (Information Security Service Digital United Inc.)

Entity
Taiwan company / 臺灣港務股份有限公司
Sector
critical-infrastructure-transport
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardcritical-infrastructure-transport資安資通安全端點應變臺灣港務
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Information-security management system procurement signal

Original: 115年資訊安全管理系統輔導及滲透測試案

決標公告 | Companies: 聯準科技股份有限公司, 創逸科技服務有限公司

Entity
Taiwan public-sector agency / 臺北市政府工務局水利工程處
Sector
critical-infrastructure-water
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardcritical-infrastructure-water資訊安全滲透測試
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Penetration testing procurement signal

Original: 臺灣土地銀行紐約分行滲透測試

決標公告 | Companies: BERNERS TECHNOLOGY LLC

Entity
Taiwan bank / 臺灣土地銀行股份有限公司
Sector
finance
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardfinance滲透測試
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Penetration testing procurement signal

Original: 本公司對外網站資安滲透測試案

決標公告 | Companies: 宏碁資訊服務股份有限公司 (ACER E-ENABLING SERVICE BUSINESS INC.)

Entity
Taiwan company / 台灣自來水股份有限公司
Sector
technology-manufacturing
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardtechnology-manufacturing資安滲透測試台灣自來水宏碁
80score

2026-08-19 / Critical Infra / No-award notice / Taiwan government procurement

No-award notice: Penetration testing procurement signal

Original: Swift滲透測試

無法決標公告

Entity
Taiwan bank / 臺灣土地銀行股份有限公司
Sector
finance
Notice stage
No-award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardfinance滲透測試
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Vulnerability scanning procurement signal

Original: 弱點掃描管理平台授權案

決標公告 | Companies: 中華資安國際股份有限公司 (CHT Security Co.,Ltd.), 訊揚科技有限公司

Entity
Taiwan healthcare organization / 國立臺灣大學醫學院附設醫院
Sector
healthcare
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardhealthcare資安弱點掃描
80score

2026-08-19 / Critical Infra / Award notice / Taiwan government procurement

Award notice: Vulnerability scanning procurement signal

Original: 網站弱點掃描工具

決標公告 | Companies: 精誠資訊股份有限公司 (Systex Corporation)

Entity
Taiwan healthcare organization / 高雄榮民總醫院
Sector
healthcare
Notice stage
Award notice
Scoring reasons
critical-infrastructure-entity, taiwan-government-procurement, critical-infrastructure-context, award-or-contract-result
procurement-security-awardhealthcare弱點掃描