Sunday, August 30, 2026

China Warns Foreign Spies Targeting Inspection Drones

Valyrian News Network 4 min read

China Warns Foreign Spies Targeting Inspection Drones

China’s Ministry of State Security (MSS) issued a formal warning on Thursday that foreign intelligence agencies have been continuously infiltrating and attacking the country’s networked drone inspection platforms, raising concerns about espionage targeting critical infrastructure. The warning, published on the MSS’s official WeChat account, detailed a specific incident in which a large domestic enterprise’s inspection platform was breached by overseas attackers who accessed sensitive operational data.

The Networked Drone Threat

Networked drones use mobile communication networks such as 4G and 5G for long-range remote control, control signal transmission, and real-time image relay. They offer ultra-high-definition video transmission, low-latency remote control, and coordinated multi-drone operations. According to Xinhua, these drones are a key driver of China’s low-altitude economy, widely used in logistics and transportation, surveillance and inspection, urban governance, and agricultural crop protection.

However, the MSS stated that the new risks posed by networked drones cannot be ignored. State security authorities have recently detected and handled multiple cases involving security risks associated with these platforms, exposing a range of potential vulnerabilities in their production and use.

A Breach of Sensitive Data

The MSS revealed that a large domestic enterprise’s inspection platform experienced abnormal cross-border traffic. Multiple overseas IP addresses exploited technical vulnerabilities in the platform to bypass authentication, illegally access its backend, and view sensitive data including inspection records, flight logs, and equipment inventories, posing a potential threat to China’s national security.

After detecting the threat, state security authorities promptly provided technical prevention guidance to the affected enterprise, blocked the malicious attacks, and continued efforts to tackle the threat at its source, as reported by China News Service.

Four Critical Security Weaknesses

The investigation identified four common security weaknesses in compromised networked drone inspection platforms:

Technical protection gaps: Unpatched vulnerabilities and weak passwords allow attackers to breach backends and gain control over flight-control command issuance and device-status data access.

Ambiguous permission management: Poorly defined user roles and access controls allow attackers to use low-privilege accounts for lateral movement to access higher-level functions.

Data transmission gaps: Unencrypted or outdated protocols on 4G/5G links enable man-in-the-middle attacks to intercept high-resolution aerial images and flight paths.

Firmware backdoors: Foreign spy agencies can exploit supply chains to implant malicious code in drone flight control modules, base station communication devices, or ground station software. As the MSS warned, once deployed and operational, the equipment becomes a covert “data sentinel,” continuously transmitting sensitive information abroad.

Five Security Recommendations

The MSS urged networked drone operators and users to strengthen cybersecurity through five key measures, as detailed in CNR/CCTV’s coverage:

  • Authentication: Implement multi-factor authentication and establish login behavior baselines with real-time alerts for abnormal IP, time, and frequency access.
  • Access Control: Follow the principle of least privilege, strictly divide user roles and data access levels, and require step-by-step approval and full auditing for high-risk operations.
  • Data Encryption: Implement high-strength encryption for drone-platform communication links and classified, encrypted storage for sensitive data.
  • Regular Inspections: Conduct regular security assessments and penetration tests by professional institutions, and establish automated screening of returned inspection imagery.
  • Legal Compliance: Strictly comply with China’s Cybersecurity Law, Data Security Law, and the Interim Regulations on the Flight Management of Unmanned Aerial Vehicles.

Broader Security Context

The warning is part of a broader campaign by China’s MSS to highlight espionage threats throughout 2026. In May, the agency uncovered a foreign intelligence agency using domestic routers in China as cyberattack proxies to send phishing emails targeting personnel at key institutions. In April, the MSS warned of AI-enabled data poisoning risks.

The latest warning comes amid heightened global tensions over drone technology and cybersecurity. The United States has been restricting Chinese drone imports, citing national security concerns, while China has become increasingly vocal about foreign espionage activities targeting its technology infrastructure. As Global Times noted, the MSS statement emphasizes that “national security is everyone’s responsibility.”

What to Watch For

State security authorities said they are continuing efforts to tackle the threat at its source, suggesting further actions may follow. The MSS has also called on citizens to report suspicious activity through the 12339 national security reporting hotline, the online reporting platform at www.12339.gov.cn, or directly to local state security authorities.

As China’s low-altitude economy continues to expand—having been elevated to an “emerging pillar industry” in the 2026 Government Work Report—the security of networked drone infrastructure will likely remain a priority for both state authorities and the private sector. The incident underscores the growing intersection between civilian technology infrastructure and national security concerns in an era of intensifying technological competition.