Space Security News
  • Home
  • News

    Unnamed defense customers reserve payload room on Dream Chaser’s first flight

    September 5, 2026

    Chinese satellite in a rare retrograde orbit leaves 43 tracked fragments

    September 5, 2026

    France’s space summit loses its US heavyweights over White House warnings

    September 5, 2026

    The Space Force changes commanders as Schiess pledges deliberate growth

    September 5, 2026
  • Features

    Darknavy claims full control of the newest Starlink terminals

    September 3, 2026

    Allied radar net watching geostationary orbit gains Wales outpost

    September 3, 2026

    Royal Air Force promotes space to a top-tier command role

    September 3, 2026

    Pentagon pays space suppliers to scale output ahead of a fleet boom

    September 3, 2026
  • Spotlight
  • Events
  • About Us
    • Mission
    • Services
    • Contact Us
Reading: Chinese hackers lose cloaking network in FBI seizure
Share
Search
  • Trending:
  • Alliances
  • Cislunar
  • Commercial
  • Communications
  • Cyber
  • Debris
  • Defense
  • Deterrence
  • Intelligence
  • Launch
  • Strategy
  • Surveillance
  • Missile
  • Navigation
  • War
Font ResizerAa
Space Security NewsSpace Security News
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About Us
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About Us
    • Mission
    • Services
    • Contact Us
Follow US
© 2026 Space Security News. All Rights Reserved.
Threat Actors & Incidents

Chinese hackers lose cloaking network in FBI seizure

The FBI seized the infrastructure of Chinese state hackers who targeted NASA, the Senate and other US agencies.

By
SSN Staff
Last updated: August 27, 2026
2 Min Read
Share

The FBI has dismantled a Chinese state-backed hacking operation that targeted NASA, the U.S. Senate, the Energy and Justice departments and other agencies for years, seizing the infrastructure behind it in a court-authorized action announced Aug. 26.

The operation rested on two tools. QScan scanned for and infected internet-of-things devices worldwide, folding them into QTRouter, an obfuscation network that mixed hijacked gadgets with commercial proxies and rented servers. That let hackers route attacks through machines near their victims so traffic looked local. Three domains hardcoded into the malware, qtproxy.xyz, qt-proxy.org and qt-team.com, were seized, rendering both services inoperable, the Justice Department said.

Court documents tie the tools to QTFY, a group linked to the Nanjing company Nanjing Xinjiuwei, with payments from China’s Ministry of State Security and members who formerly served in the People’s Liberation Army. The infrastructure has been in use since at least 2018 and was used to breach the Senate this year.

The campaign touched space agencies directly. In August 2019 the FBI investigated an attempted intrusion at NASA that exploited CVE-2019-11510, a critical Pulse Secure VPN flaw allowing attackers to harvest credentials. QTFY later reused the bug in 2020 against an Ohio medical center during the pandemic and abused CVE-2019-19781, a Citrix flaw, against a Missouri insurer.

The FBI and NSA published an advisory with indicators of compromise, and Lumen’s Black Lotus Labs released its own analysis of the group’s tactics. Officials cast the seizure as one more step against Chinese hacking, following takedowns tied to Mustang Panda, Flax Typhoon and Volt Typhoon in past years.

TAGGED:botnetChinacyber espionageFBINASAQTFYstate hackers
SOURCES:The RegisterHelp Net Security

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print

LATEST NEWS

Unnamed defense customers reserve payload room on Dream Chaser’s first flight

News
September 5, 2026

Chinese satellite in a rare retrograde orbit leaves 43 tracked fragments

US tracking counts 43 fragments after a Chinese satellite in a rare retrograde orbit breaks…

September 5, 2026

France’s space summit loses its US heavyweights over White House warnings

SpaceX and Blue Origin lead US withdrawals from Macron's summit after Washington advises firms to…

September 5, 2026

The Space Force changes commanders as Schiess pledges deliberate growth

Gen. Douglas Schiess succeeds Chance Saltzman as chief of space operations with growth and deterrence…

September 5, 2026

YOU MAY ALSO LIKE

AI startup finds vulnerability in NASA spacecraft communications that went undetected for 3 years

AI startup AISLE discovered a critical vulnerability in NASA spacecraft communications software that went undetected for three years and fixed…

News
December 8, 2025

Belgium Drops Three and a Half Billion to Build a Shared Air Defense Arsenal

Belgium has committed €3.1 billion ($3.5 billion) to a joint air defense procurement with the Netherlands, marking a major step…

Threat Actors & Incidents
July 8, 2026

Space Force plans nationwide network of ‘resilient operations centers’

The U.S.

NewsThreat Actors & Incidents
May 28, 2026

Europe risks losing orbital computing race to US and China

ESPI warns Europe is falling behind the US and China in orbital data centers.

Emerging Threats & Tech
August 7, 2026

Breaking developments in space and cybersecurity, decoded for the modern defense and technology landscape.

Follow us: 

  • News
  • Features
  • Spotlight
  • Events
  • About Us
  • Mission
  • Services
  • Contact Us
Copyright © 2026 Space Security News. All Rights Reserved.
Privacy Policy | Legal
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?