CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Srsly Risky Biz: China's Private Sector Botnets Are Worth Disrupting

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 5607

As cited

Copy frozen at (site build).

government policy

Srsly Risky Biz: China's Private Sector Botnets Are Worth Disrupting

The US Department of Justice disrupted two Chinese cyberespionage botnets, QScan and QTRouter, operated by the private company Nanjing Xinjiuwei Network Technology through its group QTFY. Both systems relied on hard-coded domains that enabled court-authorized seizures. Chinese private sector botnets remain a persistent threat despite repeated disruption efforts.

Why it matters: Organizations worldwide face ongoing reconnaissance and espionage from Chinese state-sponsored and state-aligned private sector actors; practitioners should monitor for QScan and QTRouter indicators of compromise and expect Beijing to rebuild or deploy alternative infrastructure.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary