US Disrupts QuFY-Linked Hacking Network
The updated briefing attributes the operation to a China-linked group known as QTFY, shutting down two platforms, QScan and QTRouter, used against NASA, the Federal Reserve, the Senate, the Department of Energy, DoJ, NIH and other critical networks since 2018. It describes QScan as scanning and infecting thousands of IoT devices and QTRouter as an obfuscation network, with the domains hard-coded into both tools, rendering them inoperable. The update links the activity to the Nanjing Xinjiuwei Network Technology Company and alleges that hacking services were sold to paying clients including China’s Ministry of State Security and the People’s Liberation Army. While some attacks failed (notably a 2019 NASA intrusion), others reportedly succeeded against multiple agencies, prompting bipartisan U.S. cybersecurity warnings. Beijing has denied wrongdoing, warned against national-security overreach, and defended Chinese companies’ interests.



