On August 26, the FBI took down two hacking platforms called QScan and QTRouter. The interconnected tools were allegedly used by Chinese government-backed hackers to attack major U.S. agencies, the agency announced.
How the Platforms Worked
The two platforms did different jobs. QScan was built to scan networks and find devices with security holes. Once a target was identified, QTRouter handled the next step: it made attacks look like they were coming from somewhere else entirely, letting hackers slip through without being traced back to their own machines.
The setup gave attackers a one-two punch. First, locate a weak spot. Then, hide the trail. The FBI says the platforms were used in a series of attacks on major U.S. agencies, though the agency didn't specify which ones or when the attacks happened.
The Seizure Itself
The seizure means the platforms are now under FBI control. That cuts off the hackers' ability to keep using these specific tools. It also gives investigators a window into how the operation worked, including who was running it and what they were targeting.
Neither the FBI nor the Chinese government has commented further. No arrests have been announced in connection with the takedown.
Beyond the seizure, the FBI hasn't said whether the platforms were active at the moment of the takedown or how many attacks had been carried out. The move disrupts one known piece of infrastructure, but it doesn't mean the hacking crew behind it is gone. They may already be switching to other tools.
The FBI is still working the case. Anyone with information about QScan or QTRouter has been asked to contact the agency's internet crime complaint center. The investigation remains open, and the full scope of the damage these platforms may have helped cause hasn't been made public.




