Today, the
@FBI and
@TheJusticeDept announced the disruption of a global botnet used by Chinese state-sponsored group known as QTFY to target U.S. critical infrastructure.
Our investigation attributes QTFY to the Nanjing Xinjiuwei Network Technology Company, which sells stolen data and hacking services to Chinese military and intelligence agencies. Their services include a scanning platform that scours the internet for vulnerable smart devices—like home routers and security cameras—infects thousands of them, and feeds them into a botnet, or a network of machines secretly controlled by the adversary.
These platforms hide the origin of PRC-linked cyberattacks. Thanks to the work of
@FBISanDiego, FBI Cyber Division, and partners at DOJ—we shut those platforms down 🔗