Skip to content
FBI Seizes Tools from Chinese Hackers Targeting Critical Infrastructure

FBI Seizes Tools from Chinese Hackers Targeting Critical Infrastructure

First seen 8 Oct 2026, 20:33 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 8, 2026 at 20:34 UTC
  • •FBI seized tools used by Chinese hackers linked to Flax Typhoon.
  • •Tools targeted critical infrastructure in the U.S. and abroad.
  • •Integrity Technology Group, associated with the Chinese government, operated the tools.

The FBI has seized scanning and phishing tools linked to a Chinese hacker group known as Flax Typhoon. These tools, named 'Microscan' and 'FishHub', were used to target critical infrastructure, including a U.S. power company and various international entities. The operation marks a significant law enforcement effort against state-sponsored cyber activities. FBI officials described the hacking operation as indiscriminate and reckless, affecting sectors such as academia and critical infrastructure in the U.S., Japan, Poland, and Taiwan. The tools were operated by Integrity Technology Group, a company closely associated with the Chinese government. This seizure is part of ongoing efforts to disrupt Flax Typhoon's capabilities, following a previous disruption of a botnet linked to the group. The FBI plans to monitor for potential rebuilding of the group's infrastructure.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2024-09-01
FBI disrupts Flax Typhoon botnet
The FBI announced the disruption of a botnet associated with Flax Typhoon, affecting over 200,000 devices.
Abcnews
2026-10-08
FBI announces seizure of hacking tools
The FBI revealed the seizure of scanning and phishing tools used by a Chinese hacker group, impacting critical infrastructure.
Abcnews

More articles in this cluster (6)

Following this threat?

Track Flax Typhoon and Integrity Technology Group in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What tools were seized?
The tools seized include 'Microscan' and 'FishHub', used for scanning and phishing.
Who operated these tools?
The tools were operated by Integrity Technology Group, linked to the Chinese government.
What sectors were impacted?
The hacking campaign targeted critical infrastructure, including a U.S. power company and international airports.