轉發 國家資安資訊分享與分析中心 資安訊息警訊 NICS-ANA-2026-0000741
[內容說明]
因應前沿AI資安威脅及資安事件,請各機關全面清查盤點(含設置於雲端之系統)並列
冊管理下列項目中,不應對外開放之系統、設備及網站等。
一、已無使用需求、閒置及應下架卻尚未下架之系統與網站。
二、不應曝露在外網之測試機、跳板機、測試系統、備份備援系統。
三、已無法進行安全性更新且仍需使用之老舊系統與網通設備。
如有相關疑問,可聯繫資通安全署,電話02-2380-8500客服人員
[影響平台]
詳細如內容說明
[建議措施]
請各機關執行以下資安防護措施,並於1個月內完成,將辦理結果陳報機關資安長:
一、已無使用需求、閒置、應下架卻尚未下架之系統與網站:停止服務或下架處理。
二、不應曝露在外網之測試機、跳板機、測試系統、備份備援系統:改置於內網環境,
不得直接對外提供網際網路存取,並關閉不必要之服務及通訊埠。
三、已無法進行安全性更新且仍需使用之老舊系統與網通設備:採取獨立網段等配套緩解措施,或訂定汰換期程。
Forwarded National Information Sharing and Analysis Center Information Security Alert NICS-ANA-2026-0000741
[Content Description]
In response to emerging AI cybersecurity threats and cybersecurity incidents, please have all agencies conduct a comprehensive review and inventory (including systems deployed in the cloud) and register and manage the following items, including systems, equipment, and websites that should not be publicly accessible.
I. Systems and websites that are no longer needed, idle, or should be taken offline but have not yet been taken offline.
II. Test machines, jump servers, test systems, backup and disaster recovery systems that should not be exposed to the external network.
III. Legacy systems and network communication equipment that can no longer receive security updates but still need to be used.
If you have any related questions, please contact the Administration for Cyber Security at 02-2380-8500 and speak with customer service personnel.
[Impacted Platform]
As detailed in the Content Description
[Recommended Actions]
Please have all agencies implement the following cybersecurity protection measures and complete them within 1 month, and report the results to the agency Chief Information Security Officer:
I. Systems and websites that are no longer needed, idle, or should be taken offline but have not yet been taken offline: Stop services or take them offline.
II. Test machines, jump servers, test systems, backup and disaster recovery systems that should not be exposed to the external network: Move them to an internal network environment, do not directly provide Internet access externally, and disable unnecessary services and communication ports.
III. Legacy systems and network communication equipment that can no longer receive security updates but still need to be used: Adopt corresponding mitigation measures such as a separate network segment, or establish a replacement schedule.