Chinese state-backed hackers buried spy software inside computer networks tied to American military bases, including ones on the Pacific island of Guam, according to Microsoft and U.S. officials.
Story Snapshot
- Microsoft and Western intelligence agencies say Chinese hackers planted stealthy malware in critical infrastructure on U.S. bases in Guam.
- The Navy confirmed it was hit by the same hacking campaign, which also targeted communications and maritime networks.
- A viral claim that hackers broke into “37 military bases” using stolen university logins is not backed up by any government report or news source reviewed.
- This is part of a longer pattern of Chinese cyber intrusions into U.S. defense networks, including at least 20 confirmed breaches of a military logistics command over one year.
Malware Found Deep In Guam’s Military Networks
Microsoft disclosed in May 2023 that Chinese state-backed hackers used stealthy malware to attack critical infrastructure tied to American military bases in Guam. The company and Western spy agencies said the goal was to spy on and disrupt communications between the United States and Asia if a future crisis broke out. Guam hosts a major U.S. Air Force base and sits close to Taiwan.
By July 2023, the New York Times reported the Biden administration was actively hunting for the malicious code. Officials believed China had hidden it inside networks running power grids, communication systems, and water supplies that keep U.S. military bases running, both at home and overseas. The government did not publicly release the technical details behind that assessment.
Navy Confirms It Was Hit Too
Then-Secretary of the Navy Carlos Del Toro told CNBC the Navy had been affected after Microsoft and intelligence agencies warned that a hacking group known as Volt Typhoon targeted communications and maritime industries connected to Guam. Microsoft said the hackers went after essential cyber infrastructure across multiple industries, not just one base or one branch of the military.
The Federal Bureau of Investigation (FBI) has separately warned for years that Chinese military hackers target American businesses and defense networks. An official FBI counterintelligence document names Chinese military hackers as a direct threat to firms doing sensitive government work. The Justice Department (DOJ) has also secured a guilty plea from a Chinese national who admitted joining a years-long conspiracy to hack U.S. defense contractors and steal sensitive military data.
A Long History Of Chinese Cyber Intrusions
This is not a new problem. A Senate Armed Services Committee investigation found hackers tied to the Chinese government broke into U.S. Transportation Command computer systems at least 20 times over a single year, with those intrusions confirmed as successful. Research group CSIS has tracked a similar pattern going back over a decade, including a 2013 breach of that same logistics command.
The Council on Foreign Relations has also documented Chinese hackers using publicly known software flaws to break into military and defense networks holding sensitive secrets and technology. Taken together, these confirmed cases show repeated, sustained Chinese targeting of American military-linked systems, not a single isolated event tied to one base or one year.
What The Viral “37 Bases” Claim Gets Wrong
A claim spreading online says China hacked 37 U.S. military bases using stolen university logins. No government report, news outlet, or agency document reviewed supports that exact number or that specific method of entry. The confirmed record points to Guam, Navy-linked systems, and a defense logistics command as the clearest documented targets, not a precise count of 37 installations.
This gap matters because it shows how real, serious cyber threats can get stretched into numbers nobody can verify. Americans on both sides of the aisle already distrust institutions that keep key details classified. When officials stay quiet on specifics, it leaves room for exaggerated claims to spread unchecked, even when the underlying threat from Chinese hacking is very real and well documented.
The bigger picture here is not in dispute: Chinese state-linked hackers have repeatedly targeted American military infrastructure for years, and top officials have confirmed real damage to Navy-linked systems. What remains unproven is the specific “37 bases” figure now circulating, a reminder that even confirmed threats deserve precise reporting rather than inflated headlines.
Sources:
youtube.com, bbc.com, nytimes.com, cfr.org, en.wikipedia.org, factsanddetails.com, justice.gov, cnbc.com
© libertysociety.com 2026. All rights reserved.














