US alerts on Chinese hackers targeting NASA, ministries, and the Fed
Translated from Greek and summarized by DistantNews. Read the original for the full story.
At a glance
- US authorities have dismantled a Chinese cyberespionage operation targeting sensitive government entities, including NASA, the Department of Justice, and the Federal Reserve.
- Domains for hacking platforms QScan and QTRouter, allegedly used by the Chinese company Nanjing Xinjiuwei Network Technology, were seized.
- The operation, linked to China's Ministry of State Security and People's Liberation Army, had been active since 2018, with recent breaches reported in September 2024.
U.S. authorities have announced the disruption of a sophisticated Chinese cyberespionage campaign that targeted critical American government institutions. The operation allegedly used hacking platforms known as QScan and QTRouter to infiltrate sensitive networks, including those of the Department of Justice, NASA, the Federal Reserve, and the Senate.
The U.S. Department of Justice stated that domains associated with these hacking tools were seized as part of the operation. Court documents indicate that targets also included the Department of Energy, the Department of Health and Human Services (HHS), the National Institutes of Health (NIH), and several private companies in the U.S. and South Korea.
According to U.S. officials, the hacking platforms were operated by Nanjing Xinjiuwei Network Technology Company, a Chinese firm. The company's clients reportedly included China's Ministry of State Security (MSS) and the People's Liberation Army (PLA), suggesting state backing for the cyber activities.
Chinese hackers have been employing self-developed tools to breach critical infrastructure and sensitive networks since at least 2018. Recent incidents cited by U.S. authorities include unsuccessful attempts to access NASA networks in August 2019 and breaches of Department of Energy labs, NIH, and an HHS-affiliated service in September 2024.
This latest announcement adds to a series of cyberattacks that U.S. officials have attributed to China in recent years. Experts monitoring Chinese cyber activities note a significant increase in private companies offering specialized offensive services on behalf of Chinese state agencies, highlighting the growing sophistication and reach of these operations.
The number of companies offering specialized offensive services has exploded in the last decade.
Originally published by Ta Nea in Greek. Translated, summarized, and contextualized automatically by DistantNews, with a note on how the source frames the story. Not individually reviewed before publishing. How this works.