Bottom line: The US government has taken decisive action against Chinese state-sponsored attackers, disrupting their operations and limiting their ability to target US critical infrastructure.
What's happening: Chinese state-sponsored actors have been using QScan and QTRouter platforms to compromise US critical infrastructure, including energy and transportation sectors, since at least 2021. The platforms were developed by Chinese company, ZTE Corporation.
What to do: Security leaders should review their defenses against Chinese state-sponsored attacks, and consider implementing additional security measures to prevent similar disruptions, such as using threat intelligence feeds and implementing intrusion detection systems.