Feds Seize Domain Names Used by Chinese State-Sponsored Hackers
Federal authorities in San Diego have seized domain names to block Chinese hackers from targeting U.S. government entities and critical infrastructure. The operation targeted QScan and QTRouter, two cyber platforms reportedly used by a Chinese state-sponsored group known as QTFY.
According to court filings, the platforms were used to hack into thousands of devices worldwide and create an obfuscation network that masked attack origins. The domains seized are essential for the malware's communication.
The targets included NASA, the Federal Reserve, and U.S. departments such as Energy, Justice, and Health and Human Services, as well as the U.S. Senate. The hacking campaign began in 2018, according to authorities.
U.S. Attorney General Todd Blanche said the action sends a message to hackers worldwide: 'State-sponsored malicious hackers preying on America’s critical infrastructure will be stopped and prosecuted.'