DOJ Revises QTFY Claim: Agencies Were Targets, Not Victims
The US Department of Justice has had to amend a resounding statement about the Chinese hacking group QTFY. After the first release, the impression formed that the attackers had successfully penetrated the networks of NASA, the Federal Reserve, the US Senate, and a host of other agencies. Now the authorities have refined their wording. Many organizations were indeed attacked, yet by no means every one was breached.
A One-Word Correction
The US Department of Justice amended the press release issued after the operation against QTFY’s internet infrastructure. In the original version, the listed government bodies were called “victims” of the Chinese hackers. In the corrected version, the department writes that the Senate, the Federal Reserve, NASA, and other organizations were among the “targets of QTFY.”
Why the Edit Was Made
The DOJ openly acknowledged the reason for the correction. The press release of 26 August presented all the listed agencies as victims, even though the FBI materials painted a different picture. The hackers did indeed attempt to attack every named organization; however, investigators confirmed successful penetration in only some of the cases.
Target Versus Victim
The distinction between “target” and “victim” markedly changes the scale of the story. According to the FBI materials, the China-linked group had, since at least 2018, taken an interest in the networks of NASA, the Federal Reserve, the Department of Energy, the Department of Justice, the Department of Health and Human Services, the National Institutes of Health, and the US Senate.
The Attempts That Failed
The attempt to breach NASA, for instance, ended in failure. The agency had managed to install an update for the software through which the attackers sought to enter the network. Furthermore, a separate joint advisory from US intelligence agencies also points to an unsuccessful attempt to access the Senate network in March 2026.
The Breaches That Succeeded
Successful attacks, meanwhile, did occur. The FBI links QTFY to intrusions in September 2024 into three US Department of Energy national laboratories, the National Institutes of Health, an agency of the Department of Health and Human Services, and an American manufacturer of information-security equipment. In the documents, such organizations are already described directly as victims.
US intelligence agencies also reported data thefts from unnamed defense contractors, financial institutions, and universities. Therefore, the DOJ’s correction does not negate the cyber-espionage campaign itself, but it substantially narrows the list of confirmed breaches of government structures.
Beijing’s Denial
China had previously rejected Washington’s accusations. A spokesperson for the PRC embassy stated that the US exploits the theme of cybersecurity to discredit China and broadens the notion of national security in order to impose restrictions on Chinese companies.
How One Word Reshapes the Story
The DOJ’s correction shows just how powerfully a single word can alter the meaning of a report about a major cyber operation. NASA, the Federal Reserve, and the Senate genuinely interested QTFY; nonetheless, it is premature to deem every recorded strike a success. In a number of cases, the US agencies managed to repel the attack.
Support Our Threat Intelligence
If you find our technology report and cybersecurity news helpful, consider supporting our work.