Start your day with intelligence. Get The OODA Daily Pulse.
The FBI and international partners disrupted seven domains used by Chinese state-sponsored hackers to operate the “MicroScan” and “FishHub” cyberattack tools. The infrastructure was allegedly operated by Integrity Technology Group, a contractor tied to Chinese government cyber operations and state security initiatives. MicroScan was utilized alongside a botnet to scan critical infrastructure including U.S. power companies, airports, and universities for critical vulnerabilities. FishHub facilitated spear-phishing campaigns, malware delivery, and data exfiltration from compromised networks across multiple sectors. In coordination with the seizures, U.S. and allied security agencies issued a joint advisory urging organizations to patch targeted flaws and bolster defenses.