All NewsEducationTV
Equities & FundsCrypto & Digital AssetsAI & TechnologyBusiness & CorporateUS Politics & PolicyGeopolitics & Global RiskMacro, Rates & FXCommodities & EnergyEuropean Politics & MarketsAsia-PacificReal Estate & Property
All NewsHome
← Back to US Politics & Policy

US Seizes Chinese Hacking Platforms Targeting Critical Infrastructure

Created at 26 Aug · 2:35 PM1 source↑ Market-relevant
IN SHORT

The United States has seized two Chinese state-sponsored hacking platforms, QScan and QTRouter, used to target U.S. critical infrastructure and sensitive networks. The Justice Department and FBI announced the court-authorized domain seizures, disrupting a global botnet operated by a Chinese group.

Key Numbers

twohacking platforms seized

Who's Involved

United States
seized Chinese hacking platforms
Justice Department
announced the seizure of hacking platforms
FBI
participated in the seizure of hacking platforms
QTFY
China state-sponsored hacking group
Nanjing Xinjiuwei Network Technology Company
China-based company employing QTFY
National Aeronautics and Space Administration
victim of hacking activity
Federal Reserve
victim of hacking activity
U.S. Senate
victim of hacking activity
Todd Blanche
Attorney General
Kash Patel
FBI Director
John A. Eisenberg
Assistant Attorney General for National Security
Adam Gordon
U.S. Attorney for the Southern District of California
Mark Remily
Special Agent in Charge of the FBI San Diego Field Office
US Seizes Chinese Hacking Platforms Targeting Critical Infrastructure

↳ Why This Matters

The seizure of these hacking platforms represents a significant effort by the U.S. to disrupt and deter state-sponsored cyberattacks targeting critical infrastructure and government networks, aiming to enhance national security and protect sensitive data.

Key facts

  • The U.S. seized two Chinese state-sponsored hacking platforms, QScan and QTRouter.
  • These platforms were used to target U.S. critical infrastructure and sensitive networks.
  • Victims included NASA, the Federal Reserve, NIH, and the U.S. Senate.
  • The hacking group QTFY, employed by Nanjing Xinjiuwei Network Technology Company, operated the platforms.
  • The platforms helped conceal the origin of cyberattacks by using compromised IoT devices and proxy services.

The United States has seized two Chinese state-sponsored hacking platforms, QScan and QTRouter, used to target U.S. critical infrastructure and other sensitive networks. The Justice Department and FBI announced the court-authorized domain seizures, which deny malicious cyber actors access to these tools.

According to court documents, a People's Republic of China (PRC) state-sponsored group known as “QTFY,” employed by China-based Nanjing Xinjiuwei Network Technology Company, created and operated these platforms. Among the victims of QTFY's computer intrusion activities were the National Aeronautics and Space Administration, the Federal Reserve, the Department of Energy, the Department of Justice, the Department of Health and Human Services, the National Institutes of Health, and the U.S. Senate.

These platforms were used to hide the origin of cyberattacks. QScan scans and infects internet-of-things (IoT) devices globally, adding them to the QTRouter network. QTRouter then serves as an obfuscation network, making malicious communications appear to originate from outside the PRC. QTFY reportedly offers computer hacking services to entities including China's Ministry of State Security and the People's Liberation Army.

Frequently asked questions

The seized platforms were known as QScan and QTRouter.

Victims included NASA, the Federal Reserve, NIH, the Department of Energy, the Department of Justice, and the U.S. Senate.

The platforms were operated by a Chinese state-sponsored group called QTFY, employed by Nanjing Xinjiuwei Network Technology Company.

The platforms were used to scan and infect IoT devices, creating an obfuscation network to hide the origin of cyberattacks against U.S. critical infrastructure.

What Happens Next

01Further technical operations against PRC-sponsored hacking activities are expected.
02The Justice Department will continue to pursue legal action against malicious cyber actors.

How It Developed

The U.S. has seized platforms used by Chinese state-sponsored hackers.
These platforms targeted U.S. critical infrastructure and sensitive networks.
Victims included NASA, the Federal Reserve, and the U.S. Senate.
The platforms, QScan and QTRouter, were operated by a Chinese group called QTFY.
QTFY is employed by Nanjing Xinjiuwei Network Technology Company.
The Justice Department and FBI announced the court-authorized domain seizures.
These tools were used to hide the origin of cyberattacks.
QTFY offered computer hacking services to entities including China's Ministry of State Security and the People's Liberation Army.

Sources

T1
China-sponsored hacking platforms seized by US, Justice Department saysReuters
T2
Office of Public Affairs | Justice Department and FBI Seize Platforms ...justice.gov
T2
U.S. authorities seize hacker platforms tied to China-backed attacks on ...tradersunion.com

Related Stories

FBI Probes Water Sector Supplier Hack Amid Iran-Linked Cyber Concerns
26 Aug · 10:04 AM
US military strikes Caribbean vessel, killing four
26 Aug · 12:53 AM
White House to unveil program to protect water systems against hackers
26 Aug · 2:06 PM
Trump Administration Pauses Global Visa Appointments for Training
26 Aug · 12:23 AM
US expresses 'significant concerns' over Chinese artist Gao Zhen's prison sentence
26 Aug · 1:21 PM