Article Series 04 • Natural • Accidental • Gray Zone Attacks
Threats to cables fall into three distinct categories, each with different detection difficulty and response requirements.
On the morning of December 26, 2006, a magnitude 7.0 earthquake struck offshore Hengchun. The resulting submarine landslides simultaneously severed 7 international submarine cables passing through Taiwan's southern waters within hours.
In recent years, a sprawling network known as the "Shadow Fleet" has emerged into international view. These vessels share common characteristics: unclear or frequently-changed flagging, complex ownership structures (multiple shell companies), anomalous AIS records, and appearing in sensitive waters with no explicable operational purpose.
Initially, shadow fleets were primarily used for Russian oil sanctions evasion — since the 2022 Russia-Ukraine war, hundreds of tankers have circumvented Western sanctions this way. But security analysts began noticing the same fleet appearing near submarine cables around Taiwan, the Baltic Sea, and elsewhere, with behavioral patterns inconsistent with normal sailing or fishing operations.
Analysts also point to a more alarming trend: China is developing active cutting technology targeting deep-sea cables. Traditional "accidental" methods mainly occur in shallow water (within 200 meters), because deep-sea cables are difficult to reach through normal fishing operations.
But according to research reports, Chinese naval research institutes have obtained patents for deep-sea operational equipment capable of cutting cables at greater depths — locations far from any plausible fishing or commercial sailing needs. This means the cover story of "pretending it's an accident" is expanding into deep-sea environments that previously offered almost no plausible deniability.
Looking across these threats, a disturbing common logic emerges: submarine cables are targets with extremely high attack payoff and extremely difficult attribution.
This is exactly why Taiwan must build a proactive monitoring system rather than waiting to react after incidents occur. The next article explores Taiwan's existing enforcement framework, and the institutional challenges it faces.
Almost every cable-damage case hinges on the same question: was it an accidental anchor drag or deliberate sabotage? Because the physical result can be identical (an anchor dragging across the seabed and snagging a cable), "a cable broke" alone proves almost nothing about intent. Whether it is suspicious is hidden in the pattern of behavior.
No single indicator can "prove" intent — but when several red flags coincide, deniability erodes. That is the logic behind this site's threat scoring: not to rule on any one event, but to accumulate behavioral evidence and surface the few most worth investigating.
The concepts on this page can be verified against these public, authoritative sources:
This page is for research and education; detection signals are leads to investigate, not legal or factual findings. See the methodology.