itpro.com • 6h
QTYF Threat Group Utilizes qscan and qtrouter to Breach US Federal Agencies via IoT Botnets
The Chinese state-sponsored threat group QTYF conducted a sophisticated espionage campaign targeting the US Department of Justice, NASA, the Federal Reserve, and the US Senate. The actors deployed a global botnet of hijacked IoT devices—including routers and smart appliances—to mask their origins and provide a resilient C2 infrastructure. Using custom binaries qscan for network reconnaissance and qtrouter for traffic obfuscation and routing, QTYF successfully exfiltrated high-value national security and economic data. The operation was disrupted through FBI-led domain seizures and the neutralization of the core routing toolsets.
Links:itpro.com, techjacksolutions.com, Nextgov, Therecord, Pcmag, Tomshardware, Dailysabah, Cbc, Finedayradio •