The U.S. Department of Justice has disrupted a Chinese hacking operation linked to Nanjing Xinjiuwei Network Technology that targeted sensitive government agencies, research institutions, and private companies since 2018.
Key Points
- The Justice Department seized domains associated with the QScan and QTRouter hacking platforms used in the campaign.
- Targets included the Department of Energy, NASA, the Federal Reserve, the National Institutes of Health, and the U.S. Senate.
- Investigators linked the operation to the Nanjing Xinjiuwei Network Technology Company, which allegedly serves China’s Ministry of State Security and military.
- Hacking attempts and successful intrusions have been documented against U.S. and South Korean entities since at least 2018.
- A joint advisory from the FBI, NSA, and U.S. Cyber Command detailed the group's use of custom tools to exploit network vulnerabilities.