FBI Disrupts Chinese Hacking Tools Targeting Critical Infrastructure
The FBI has seized seven domains used by Chinese state-sponsored hackers known as Flax Typhoon to operate infrastructure-targeting tools.

The United States Federal Bureau of Investigation (FBI) has successfully seized seven domains utilized by a Chinese state-sponsored cyberespionage group known as Flax Typhoon. These domains were instrumental in operating two malicious tools, MicroScan and FishHub, which have been deployed in sophisticated attacks against critical infrastructure and various organizations worldwide.
According to investigative findings, the Flax Typhoon group leveraged these tools to infiltrate and maintain unauthorized access to strategically vital networks globally. The breadth of these campaigns highlights the continuous threat posed by advanced persistent threat (APT) groups targeting foundational sectors necessary for economic and social stability.
By seizing the command-and-control domains, law enforcement effectively disrupted the hackers' ability to manage their operational infrastructure remotely. This action mitigates ongoing risks and delivers a significant blow to the operational capabilities of the threat actors involved.
For technology professionals and security experts in Uzbekistan and the broader CIS region, such international incidents emphasize the critical need for robust cybersecurity measures. Protecting critical infrastructure from state-sponsored cyber threats requires continuous network monitoring, stringent access controls, and proactive threat intelligence sharing to safeguard vital digital assets.



