The Justice Department seized domains tied to two tools, QTRouter and QScan, that a Chinese hacking group called QTFY used to route attacks through hijacked IoT devices and commercial proxy services. Prosecutors say the network, allegedly linked to Nanjing Xinjiuwei Network Technology Company and used by China's Ministry of State Security and PLA, enabled breaches at NASA, the Senate, the Federal Reserve, HHS, NIH, and the DOJ itself since at least 2018.
wired.com
· 2026-08-26
The Justice Department announced it has seized domains used by a Chinese state-linked botnet known as QTFY, run by Nanjing Xinjiuwei Network Tech, disrupting its command-and-control infrastructure. The botnet reportedly enabled hackers tied to China's Ministry of State Security to infiltrate U.S. government and private-sector networks, including NASA, the Federal Reserve, several federal departments, and, as recently as this year, the Senate. Lumen, a network provider that assisted the FBI, said it had tracked the group profiling government, defense, and aerospace targets for roughly a year before the takedown.
techcrunch.com
· 2026-08-26