logo

Chinese Hacker Group QTFY Uses Custom-Built Platforms to Target US Infrastructure, FBI Warns

ID: 17e02882-9ab5-5a22-8e2a-c8ec710e9aef

STIX ID: report--17e02882-9ab5-5a22-8e2a-c8ec710e9aef

Feed Name: Infosecurity Magazine (News)

Threat Score
90/100

Date Published: 2026-08-27

Date Updated: 2026-08-27

...
...

The FBI advisory warns that QTFY, a sophisticated PRC-linked APT, has used custom platforms (QScan for large-scale reconnaissance and QTRouter for traffic obfuscation using compromised IoT devices) and exploited a Check Point Quantum Gateway vulnerability to exfiltrate data from over 300 organizations including US government, defense contractors, financial institutions and universities; the advisory describes their TTPs, urges mitigations (patching, threat hunting, network isolation), and notes US authorities disrupted QTFY infrastructure on August 26.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.