Abcnews FBI Seizes Tools from Chinese Hackers Targeting Critical Infrastructure
Article Content
- •FBI seized tools used by Chinese hackers linked to Flax Typhoon.
- •Tools targeted critical infrastructure in the U.S. and abroad.
- •Integrity Technology Group, associated with the Chinese government, operated the tools.
The FBI has seized scanning and phishing tools linked to a Chinese hacker group known as Flax Typhoon. These tools, named 'Microscan' and 'FishHub', were used to target critical infrastructure, including a U.S. power company and various international entities. The operation marks a significant law enforcement effort against state-sponsored cyber activities. FBI officials described the hacking operation as indiscriminate and reckless, affecting sectors such as academia and critical infrastructure in the U.S., Japan, Poland, and Taiwan. The tools were operated by Integrity Technology Group, a company closely associated with the Chinese government. This seizure is part of ongoing efforts to disrupt Flax Typhoon's capabilities, following a previous disruption of a botnet linked to the group. The FBI plans to monitor for potential rebuilding of the group's infrastructure.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track Flax Typhoon and Integrity Technology Group in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What tools were seized?
Who operated these tools?
What sectors were impacted?
Continue Reading
State Actors Target New Zealand with Cyber Espionage State actors are conducting sophisticated cyber operations against New Zealand, primarily focused on espionage. These activities target both government and private sector organizations, with a notable emphasis on critical infrastructure such as energy, telecommunications, and transport networks. The National Cyber…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…