China’s intelligence apparatus has grown into a global force, with its Ministry of State Security (MSS) at the center of a far-reaching espionage network. U.S. officials call Chinese economic and cyber espionage “a grave threat” to American security and prosperity. Western analysts estimate China may employ on the order of 600,000 people in intelligence and security roles worldwide. The MSS – formed in 1983 – is the CCP’s main foreign-intelligence agency, working alongside the Ministry of Public Security, military intelligence, and United Front organizations to conduct cyber intrusions, human intelligence and influence operations. These networks are blamed for thousands of incidents in the West: a CSIS survey tallied 224 reported cases of Chinese espionage against U.S. targets since 2000, the bulk occurring under Xi Jinping. The FBI and other agencies have warned that China’s espionage effort is now unprecedented in scale and global reach.
Cyber operators linked to the MSS and PLA have launched numerous intrusions. For example, a 2024 U.S. court-authorized operation disrupted “Volt Typhoon,” a PRC-backed hacker campaign that used compromised home/office routers as stepping-stones into U.S. utilities and government networks. Soon after, U.S. and allied authorities seized control of a botnet of some 260,000 internet-connected devices – mainly CCTV cameras and routers – infected by a Chinese contractor known as “Flax Typhoon”. These devices were being used to hide the origin of cyber intrusions into governments, media, telecoms and other critical sectors. FBI Director Christopher Wray warned that “the Chinese government is going to continue to target your organizations and our critical infrastructure either by their own hand or concealed through their proxies”. Along with these visible operations, private intelligence firms report surges in China-linked cyberattacks: CrowdStrike’s 2025 threat report found a 150% increase in “China-nexus” state-sponsored intrusions in 2024, including targeted breaches in finance, media and manufacturing.
Spy Hardware and Hidden Channels
Concerns extend to physical technology. Security researchers and agencies have uncovered hidden components in Chinese-made hardware that could enable covert access. In May 2025 Reuters reported that U.S. experts found undocumented communication modules – small cellular radios and wireless transmitters – embedded in Chinese-made power inverters and battery systems used on electricity grids. These “ghost” devices were not listed on product schematics, meaning a U.S. utility’s firewall defenses could be bypassed, potentially allowing remote sabotage or data theft. Former NSA chief Mike Rogers warned that China “believes there is value in placing at least some elements of our core infrastructure at risk of destruction or disruption,” by relying on such ubiquitous hardware.
Browsers and network cameras are another vector. A Department of Homeland Security bulletin in early 2025 warned that Chinese-made internet-connected cameras on U.S. critical networks “may be used to spy on” infrastructure. These CCTV devices typically lack encryption and by default phone home to Chinese servers, giving potential espionage actors an entry point to pivot deeper into industrial control systems. The bulletin cited “tens of thousands” of Chinese cameras in sectors like energy and chemicals, and noted that an FCC import ban on them (imposed in 2022) has been easily evaded by “white labeling” Chinese cameras as foreign brands. DHS warned that a hacker could even use cameras to suppress alarms or disable safety fail-safes on critical systems.
Chinese tech in telecommunications has long been contentious. U.S. law enforcement says some Chinese equipment makers are beholden to China’s national intelligence laws, creating a risk that any gear – from routers to AI chips – might contain backdoors. (For instance, the Americans explicitly forbid Huawei and ZTE kit in 5G networks.) While major Western tech firms have strongly denied media reports of tiny “spy chips” on their servers, supply-chain experts say the threat of hidden hardware implants keeps authorities on guard. In sum, security officials caution that any Chinese network hardware – whether a surveillance camera, router or industrial controller – must be treated as potentially compromised, prompting bans and new scrutiny in multiple countries.
Notable Incidents Around the World
- Czech Republic (May 2025): Prague publicly blamed Beijing for a cyber intrusion on its foreign ministry. Officials said hackers from APT31 (a group “publicly associated with the Chinese Ministry of State Security”) breached an unclassified communications network in 2022. Czech FM Jan Lipavsky summoned China’s ambassador, warning that such “hostile actions have serious consequences,” and NATO/EU allies backed Prague’s allegations.
- United Kingdom (2023–24): British police charged two men under the Official Secrets Act with spying for China – one was a former MP’s researcher. In 2023 the UK, joined by the U.S., sanctioned a tech firm identified as an MSS front company for hacking campaigns that hit millions (including lawmakers and defense contractors). The UK also banned Chinese-made CCTV systems on government sites and ordered removal of all such cameras from “sensitive” locations by April 2025.
- Germany (2024): Authorities arrested and charged an aide to a German MEP on suspicion of passing EU legislative secrets to Chinese intelligence. Separately, German prosecutors said three citizens were caught sharing sensitive technology for potential military use with Beijing. Interior Minister Nancy Faeser called these revelations “an attack on European democracy from within” and vowed to ramp up counter-espionage.
- Netherlands (2024): Dutch military intelligence reported that Chinese operatives had been probing its semiconductor, aerospace and naval industries to bolster China’s military technology. In February 2024 Dutch intel agencies disclosed that Chinese state hackers had breached a Dutch military network as part of a pattern of “political espionage” against the Netherlands and its allies.
- United States (2024): Besides the camera botnet takedown mentioned above, U.S. authorities charged in October 2023 a Chinese MSS officer, Yanjun Xu (alias Zhang Hui), with conspiring to steal nuclear sub technology. Cybersecurity firms note a rapid rise in China-linked attacks – for example, CrowdStrike found targeted intrusions in U.S. finance and media jumped 300% in 2024. These trends reinforce lawmakers’ push to view Chinese data and hardware as national-security concerns.
- India (2025): Alarmed by Beijing’s surveillance reach, New Delhi this spring imposed strict security tests on all video cameras. Policymakers said a 2021 audit showed one million government CCTV cameras were Chinese-made, with risks that footage was sent to servers in China. From April 2025, foreign camera-makers – including China’s Hikvision, Dahua and Xiaomi – must submit device hardware, firmware and source code to Indian labs for inspection before they can sell products. Authorities explicitly cite fear of “China’s sophisticated surveillance capabilities” as driving these rules.
China’s CCTV surveillance network in New Delhi has raised national security alarms. Indian officials report that by 2021 roughly one million government cameras came from Chinese firms, sparking concerns that Beijing could access sensitive video feeds. The government’s new regulations (effective April 2025) force all camera vendors – Chinese and others – to allow New Delhi’s labs to test and audit their equipment, including firmware and source code, before market approval. Industry leaders warn these measures could disrupt supply chains, but supporters say they are needed to guard against espionage.
Global Responses and Countermeasures
Governments worldwide are reacting with bans, sanctions and new laws. In the United States, regulators banned the import of Chinese-manufactured internet cameras in 2022, citing national-security threats, and Congress is drafting laws to vet or restrict China-linked tech and AI chips. DHS and the Cybersecurity and Infrastructure Security Agency (CISA) have issued multiple advisories on Chinese cyber campaigns, while FBI and Justice Dept. actions (like the Volt Typhoon disruption) signal zero tolerance for Chinese intrusions.
Across Europe, skepticism of Chinese tech has hardened. The UK government has halted all new installations of cameras made by companies subject to China’s National Intelligence Law, and plans to remove the rest from high-security sites by 2025. British intelligence reports and media have also highlighted China’s use of security cameras in Xinjiang “re-education camps,” fueling calls to blacklist companies like Hikvision and Dahua. At the EU level, officials publicly attributed major hacks (such as the 2021 Microsoft Exchange attack) to MSS-backed groups, accusing China of economic espionage. NATO and EU foreign ministers have issued joint statements condemning recent cyberattacks from China-linked actors, and US-UK sanctions target firms tied to Chinese spy networks.
India’s stance has echoed these moves. New Delhi not only tightened camera rules, but in 2020 banned scores of Chinese software apps (like TikTok and WeChat) to block potential data leakage. Officials say they will continue scrutinizing all networked technology.
In industry and academia, awareness is growing. Cybersecurity firms emphasize that Chinese operators are increasingly malware-free and identity-driven – using stolen credentials and AI-based social engineering to evade detection. Experts warn that legacy defenses must be overhauled as China-backed groups blend into trusted network traffic. In short, governments advise businesses to assume that any Chinese-supplied hardware or software could be a covert channel, and to adopt zero-trust security models.
Analysts say the international response is only the first wave. Intelligence officials warn that Beijing’s targeting of foreign critical infrastructure and insiders will persist. As one U.S. advisor put it, cutting the cables is only “one round in a much longer fight”. For now, Washington, its allies and partners like India are aggressively tightening scrutiny of Chinese-made technology. The unfolding saga of surveillance cameras, embedded chips and cyber espionage underscores a key pivot: nations are treating Chinese telecoms and security equipment not just as commercial products, but as potential intelligence threats to guard against at every level.

