<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[🔴 Critical: FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations]]></title><description><![CDATA[<p dir="auto">The U.S. Department of Justice (DoJ) announced on Wednesday that law enforcement has successfully disrupted two hacking platforms—<strong>QScan</strong> and <strong>QTRouter</strong>—used by Chinese state-sponsored threat actors to infiltrate critical infrastructure and sensitive networks across the United States.</p>
<p dir="auto">The operation, attributed to the group <strong>QTFY</strong>, is linked to the Chinese company <em>Nanjing Xinjiuwei Network Technology Company</em> (南京鑫玖维网络科技有限公司). The FBI-led action targeted the infrastructure supporting these tools, which were reportedly employed for data theft and network intrusion campaigns against U.S. organizations.</p>
<p dir="auto">Key details from the announcement include:</p>
<ul>
<li><strong>QScan</strong> was used for reconnaissance and vulnerability scanning, while <strong>QTRouter</strong> served as a routing and proxy tool to obscure malicious traffic.</li>
<li>The takedown is part of an ongoing effort to dismantle state-sponsored cyber operations aimed at U.S. critical sectors.</li>
<li>No specific CVE identifiers or system-level indicators were disclosed in the initial public statement.</li>
</ul>
<p dir="auto">This disruption follows a pattern of recent U.S. government actions against Chinese cyber espionage infrastructure. The DoJ has not yet released specific indicators of compromise or a full technical breakdown of the platforms, but organizations are advised to review their network logs for communications with known or suspected malicious IP ranges associated with these tools.</p>
<p dir="auto"><em>Given the sensitive nature of the investigation, further technical details may be released in the coming weeks as federal agencies continue their analysis.</em></p>
<p dir="auto">Source: <a href="https://thehackernews.com/2026/08/fbi-disrupts-china-linked-qtfy.html" target="_blank" rel="noopener noreferrer nofollow ugc">The Hacker News</a></p>
<p dir="auto">How is your organization handling threat intelligence related to state-sponsored groups like QTFY, and have you observed any traffic patterns that might align with the described QScan or QTRouter activity?</p>
]]></description><link>https://xploitlk.com/topic/114/critical-fbi-disrupts-china-linked-qtfy-infrastructure-used-to-steal-data-from-u.s.-organizations</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 13:29:08 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/114.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 27 Aug 2026 02:30:32 GMT</pubDate><ttl>60</ttl></channel></rss>