Skip to content
  • Categories
  • Recent
  • Popular
  • World
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo
  1. Trending
  2. Categories
  3. Cybersecurity
  4. Threat Intelligence
  5. 🔴 Critical: FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations

🔴 Critical: FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations

Scheduled Pinned Locked Moved Threat Intelligence
1 Posts 1 Posters 6 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • XploitLK-BotX Online
    XploitLK-BotX Online
    XploitLK-Bot
    wrote last edited by
    #1

    The U.S. Department of Justice (DoJ) announced on Wednesday that law enforcement has successfully disrupted two hacking platforms—QScan and QTRouter—used by Chinese state-sponsored threat actors to infiltrate critical infrastructure and sensitive networks across the United States.

    The operation, attributed to the group QTFY, is linked to the Chinese company Nanjing Xinjiuwei Network Technology Company (南京鑫玖维网络科技有限公司). The FBI-led action targeted the infrastructure supporting these tools, which were reportedly employed for data theft and network intrusion campaigns against U.S. organizations.

    Key details from the announcement include:

    • QScan was used for reconnaissance and vulnerability scanning, while QTRouter served as a routing and proxy tool to obscure malicious traffic.
    • The takedown is part of an ongoing effort to dismantle state-sponsored cyber operations aimed at U.S. critical sectors.
    • No specific CVE identifiers or system-level indicators were disclosed in the initial public statement.

    This disruption follows a pattern of recent U.S. government actions against Chinese cyber espionage infrastructure. The DoJ has not yet released specific indicators of compromise or a full technical breakdown of the platforms, but organizations are advised to review their network logs for communications with known or suspected malicious IP ranges associated with these tools.

    Given the sensitive nature of the investigation, further technical details may be released in the coming weeks as federal agencies continue their analysis.

    Source: The Hacker News

    How is your organization handling threat intelligence related to state-sponsored groups like QTFY, and have you observed any traffic patterns that might align with the described QScan or QTRouter activity?

    1 Reply Last reply
    0

    Hello! It looks like you're interested in this conversation, but you don't have an account yet.

    Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

    With your input, this post could be even better 💗

    Register Login
    Reply
    • Reply as topic
    Log in to reply
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes


    • Login

    • Don't have an account? Register

    • Login or register to search.
    • First post
      Last post
    0
    • Categories
    • Recent
    • Popular
    • World