Chinese State-Sponsored Hackers Infiltrate High-Profile US Organizations
The US Justice Department and FBI have revealed that Chinese state-sponsored hackers infiltrated systems at several high-profile organizations, including NASA, the Federal Reserve, and the U.S. Senate.
The investigation found that a group known as QTFY, which is employed by the Nanjing Xinjiuwei Network Technology Company, used malware to compromise these systems since 2018.
The group's system, which includes an obfuscation layer to mask malicious traffic, has been used to scan and infect thousands of IoT devices worldwide, adding them to a botnet network called QTRouter.
The Justice Department seized three domains related to the group: qtproxy.xyz, qt-proxy.org, and qt-team.com. The investigation into QTFY began as early as 2019, when the FBI looked into a system intrusion at NASA related to a patched vulnerability.