Science & Tech · Cybersecurity · 2 days ago

US seizes two China-linked hacking tools used against critical infrastructure

US seizes two China-linked hacking tools used against critical infrastructure

The FBI and Justice Department seized domains used to operate two hacking tools, Microscan and FishHub.

US officials link the tools to Integrity Technology Group, a China-based company with contracts with the Chinese government.

They say the company worked with hackers known as Flax Typhoon, who targeted organizations in the US and other countries.

Microscan scanned networks for software weaknesses, while FishHub used phishing emails to break into networks and install more malware.

Targets included a US power company, airports in Japan and Poland, and Taiwanese power companies and universities.

Officials say FishHub was used against about 20 Taiwanese universities, and the malware could give clients remote access or steal files.

This is the second public disruption of Integrity Tech’s infrastructure; the US disrupted a botnet linked to the company in 2024.

Government agencies have also advised organizations to patch software, enable multi-factor authentication and disable services they do not use.

Sources

Related news