HomeUSAUS Seizes Infrastructure Used by Chinese State-Sponsored Hac
USA

US Seizes Infrastructure Used by Chinese State-Sponsored Hackers

Federal authorities have dismantled a sophisticated digital dragnet operated by Chinese-backed hackers known as QTFY. By seizing control of the QScan and QTRouter platforms, the Justice Department successfully disrupted a global network that had compromised high-level targets ranging from NASA and the Federal Reserve to the US Senate.

US Seizes Infrastructure Used by Chinese State-Sponsored Hackers

The hacking group QTFY functioned as a professional service provider for the Chinese Ministry of State Security and the People's Liberation Army. Working through a front company, Nanjing Xinjiuwei Network Technology, the group utilized automated malware to exploit thousands of internet-connected devices worldwide. These compromised systems formed a botnet, allowing attackers to mask their location by routing malicious traffic through servers situated near their targets.

Attorney General Todd Blanche confirmed the operation effectively neutralized the software, which had been embedded into critical sectors including defense contracting, healthcare, and telecommunications. By seizing the specific internet domains required for the botnet's authentication and communication, the FBI rendered the platforms inoperable. Alongside the takedown, the FBI and the National Security Agency released technical guidance to help private and public organizations identify potential indicators of previous QTFY activity.

Comments (0)

Leave a comment

No comments yet. Be the first!