logo

FBI Seizes China State-Sponsored Hacker Platforms Used to Target U.S. Critical Infrastructure

ID: d792fee3-5480-563f-9e40-57eb7d9ed65f

STIX ID: report--d792fee3-5480-563f-9e40-57eb7d9ed65f

Feed Name: GBHackers

Threat Score
90/100

Date Published: 2026-08-27

Date Updated: 2026-08-27

Author: Divya

...
...

U.S. authorities seized domains for QScan and QTRouter, two malware platforms operated by a PRC-linked APT called QTFY that automatically compromised IoT devices to create a proxy-based infrastructure used against high-value U.S. targets (NASA, Federal Reserve, multiple federal agencies, and the U.S. Senate). The seizure, which disabled domain-dependent communication and authentication for the platforms, follows prior disruptions of PRC-linked botnets and an FBI/NSA advisory; organizations are advised to review IOCs, investigate unusual outbound IoT connections, rotate credentials, segment unmanaged devices, and patch exposed equipment.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.