U.S. congressional testimony and a recent report from the U.S.-China Economic and Security Review Commission have highlighted growing concerns over China's development of advanced technologies and strategies to target undersea communications cables. These cables are critical infrastructure, carrying the vast majority of global internet traffic, and are increasingly seen as vulnerable to both physical and cyber threats. The testimony and report emphasize that new Chinese innovations, such as the AJX-002 undersea drone and deep-sea cable cutting devices, have made it technologically feasible for state actors to launch coordinated attacks on multiple cables, potentially disrupting communications for entire regions like Taiwan. The U.S. is currently ill-prepared to rapidly repair or replace damaged cables due to regulatory and logistical challenges, underscoring the urgent need for policy reform and enhanced protection measures.
The Commission's report details that Chinese military-affiliated research institutions have developed and patented devices capable of severing armored cables at depths exceeding 13,000 feet. Real-world incidents have already been observed, including Chinese vessels damaging cables near Taiwan and in the Baltic Sea, with one notable case involving a ship dragging its anchor and severing two major cables in November 2024. The report warns that in the event of a conflict, particularly over Taiwan, the Chinese military is expected to target undersea cables to isolate the island. These developments represent a significant escalation in the threat landscape for global communications infrastructure, prompting calls for immediate action to strengthen the resilience and security of undersea cable networks.

See the actors and campaigns active against you right now.
7 events from the most recent confirmed update back to the earliest known activity.
Taiwan's Dongyin Island lost its undersea cable connection to Beigan Island after bad weather caused a shipwreck on the seafloor to shift and cut the link. Authorities switched to a backup microwave communications system to maintain internet and mobile service for the island's roughly 1,500 residents, though service remained weather-dependent.
Chinese sources reportedly disclosed a successful trial of a deep-sea electro-hydrostatic actuator capable of cutting undersea cables at depths of about 3,500 meters, conducted from the research vessel Haiyang Dizhi 2. State messaging suggested the system had progressed beyond development toward operational application, heightening concerns about sabotage risks to submarine infrastructure.
Lawfare published an analysis arguing that the United States is unprepared to rapidly repair or replace damaged undersea cables because of outdated regulations, limited repair capacity, and supply chain constraints. It urged Congress and policymakers to adopt a national contingency plan, streamline permitting, and build a public-private consortium for cable protection and response.
A congressional report detailed China's new deep-sea cable-cutting capability and warned of growing Chinese capacity to threaten undersea communications infrastructure. The report highlighted the strategic risk posed by tools able to cut heavily protected submarine cables at great depth.
China developed advanced subsea systems, including the AJX-002 undersea drone and a deep-sea cable cutter reportedly capable of severing armored cables at depths of about 13,000 feet. These capabilities raised concern that coordinated attacks on critical submarine cable links could become technically feasible.
The FCC's Communications Security, Reliability, and Interoperability Council previously produced recommendations aimed at improving submarine cable security and resilience. According to the later analysis, many of these recommendations were not fully acted upon.
A Department of Homeland Security report previously warned that U.S. undersea cable infrastructure faced significant vulnerabilities and required stronger protection and response planning. The later Lawfare analysis cites these earlier warnings as part of a pattern of unaddressed risk.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
5 references tracked. Mallory keeps watching after this page renders.
tomshardware.com
Open sourcearstechnica.com
Open sourcetomshardware.com
Open sourcelawfaremedia.org
Open sourcetomshardware.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.