6 days ago
US Disrupts China-Linked Platforms Targeting NASA, Senate, Federal Reserve
US officials say they took control of websites used by a hacking group called QTFY.
The group allegedly had connections to China.
Its tools, called QScan and QTRouter, helped find and infect internet-connected devices.
Those devices could hide where the hackers’ messages came from.
Officials say the activity targeted NASA, the Federal Reserve, the US Senate, and other government agencies.
Hospitals, universities, power companies, banks, and defense contractors were also allegedly targeted.
The Justice Department and FBI said seizing the domains made the platforms stop working.
China has denied involvement in cyberattacks and did not immediately comment on this specific operation.
US authorities seized internet domains allegedly used by the China-linked hacking group QTFY.
The domains supported QScan and QTRouter, platforms allegedly used to target US government and critical-infrastructure networks.
Reported government targets included NASA, the Federal Reserve, the US Senate, and several federal departments.
Private-sector targets allegedly included hospitals, universities, telecommunications providers, power companies, financial institutions, and defense contractors.
Court filings allege QTFY sold custom hacking services to China’s Ministry of State Security and People’s Liberation Army.
- Who
- The US Justice Department and FBI acted against QTFY, which US officials describe as a China-linked, state-sponsored hacking group.
- What
- Authorities seized domains allegedly needed to operate the QScan and QTRouter hacking platforms.
- Where
- The alleged activity involved online infrastructure and targets in US government, critical-infrastructure, and private-sector networks.
- When
- US agencies announced the operation on Tuesday, August 25; one report referred to an agency statement issued Wednesday, creating a date discrepancy.
- Why
- US officials said the operation was intended to disrupt hacking activities linked to the People’s Republic of China and protect critical services.
US Authorities’ Allegations
China’s Response
Responsibility for the hacking
US Authorities’ Allegations
The Justice Department and FBI say QTFY was a China-linked, state-sponsored group that targeted US government and critical infrastructure networks.
China’s Response
China has consistently denied involvement in cyberattacks, said it opposes hacking, and has accused the United States of conducting global cyber operations.
Purpose of the operation
US Authorities’ Allegations
US officials said seizing the domains disrupted a global botnet and hacking platform and protected services relied upon by Americans.
China’s Response
Chinese officials have argued that cybersecurity allegations can be used to discredit China and advance broader geopolitical objectives.
Extent of the breach
US Authorities’ Allegations
US agencies identified numerous alleged targets, including NASA, the Federal Reserve, the Senate, and private infrastructure.
China’s Response
The Justice Department did not specify which systems were accessed or whether any information was stolen.
Key facts
- Alleged hacking group
- QTFY
- Associated platforms
- QScan and QTRouter
- Reported government targets
- NASA, the Federal Reserve, the US Senate, the National Institutes of Health, and the departments of Justice, Energy, and Health and Human Services
- Reported private-sector targets
- Hospitals, universities, telecommunications providers, power companies, financial institutions, healthcare facilities, and defense contractors
- Alleged operator
- Nanjing Xinjiuwei Network Technology Company, a China-based technology firm
- Alleged customers
- China’s Ministry of State Security and People’s Liberation Army, according to unsealed court filings
- Additional response
- The FBI and National Security Agency issued a cybersecurity advisory with indicators for detecting possible QTFY activity
Quotes
Todd Blanche
US Attorney General
“Federal law enforcement investigated and disabled the PRC's malicious software, the latest in a series of technical operations to dismantle indiscriminate hacking activities sponsored by the People's Republic of China،.جان0”
NDTV
wionews.com
freepressjournal.in
“global botnet and hacking platform used by Chinese state-sponsored hackers to target US critical infrastructure.”
freepressjournal.in
Sources
US says China-linked hackers targeted NASA, Fed Reserve and Senate
US Says Chinese Hackers Broke Into NASA, Senate In Big Security Breach
US cracks down on Chinese hacking platforms used to target NASA and Federal Reserve










