{"id":31989,"date":"2026-08-29T17:44:22","date_gmt":"2026-08-29T16:44:22","guid":{"rendered":"https:\/\/investx.fr\/en\/2026\/08\/29\/doj-corrects-statements-chinese-hacking-confirmed-victims\/"},"modified":"2026-08-29T17:44:27","modified_gmt":"2026-08-29T16:44:27","slug":"doj-corrects-statements-chinese-hacking-confirmed-victims","status":"publish","type":"post","link":"https:\/\/investx.fr\/en\/crypto-news\/doj-corrects-statements-chinese-hacking-confirmed-victims\/","title":{"rendered":"Chinese Hacking: DOJ Corrects Its Statements and Reduces the Number of Confirmed Victims"},"content":{"rendered":"\n

The U.S. Department of Justice<\/strong> has just amended an official press release concerning a Chinese cyberespionage operation<\/strong> \u2014 a correction that fundamentally changes the scope of the case.<\/p>\n\n\n\n

Agencies as sensitive as NASA<\/strong>, the Federal Reserve<\/strong>, and the U.S. Senate<\/strong> were initially presented as victims. The reality is more nuanced, and the DOJ has had to acknowledge that publicly.<\/p>\n\n\n\n

This clarification raises serious questions about the rigor of official communications on cybersecurity<\/strong> matters \u2014 and about the true scale of the Chinese threat against critical U.S. infrastructure<\/strong>.<\/p>\n\n\n\n

The DOJ Sets the Record Straight: Targets vs. Victims \u2014 A Critical Distinction<\/h2>\n\n\n\n

On August 26, 2026<\/strong>, the Department of Justice<\/strong> published a press release describing a cyberespionage<\/a><\/strong> campaign orchestrated by QTFY<\/strong>, a group sponsored by the People’s Republic of China<\/strong>. In its original version, the document referred to a list of high-profile federal agencies as victims<\/em>: NASA<\/strong>, the Federal Reserve<\/strong>, the U.S. Senate<\/strong>, the Department of Energy<\/strong>, the Department of Justice<\/strong> itself, the Department of Health and Human Services (HHS)<\/strong>, and the National Institutes of Health (NIH)<\/strong>.<\/p>\n\n\n\n

The problem: the underlying affidavit \u2014 the legal document supporting the domain seizures \u2014 does not confirm intrusions across all of those entities. The DOJ therefore corrected its press release, replacing the word “victims” with “targets.”<\/strong> An explanatory note states that the changes were made to “accurately reflect the government’s allegations in the affidavit.”<\/p>\n\n\n\n

This distinction is far from trivial. In the field of cybersecurity<\/strong>, being a target<\/em> means that an attempted intrusion was detected or suspected \u2014 without any confirmed compromise of the system. Being a victim<\/em> implies a confirmed breach with actual access to data or systems. Conflating the two in an official press release constitutes a significant factual error.<\/p>\n\n\n\n

What the Affidavit Actually Reveals: Confirmed but Limited Intrusions<\/h2>\n\n\n\n
\"Chinese<\/figure>\n\n\n\n

According to the affidavit, the confirmed intrusions<\/strong> are concentrated within a far narrower perimeter than the original press release suggested. In September 2024<\/strong>, three national laboratories<\/strong> under the Department of Energy<\/strong> were compromised, along with the NIH<\/strong>, one HHS<\/strong> agency, and a U.S. manufacturer of cybersecurity devices<\/strong>.<\/p>\n\n\n\n

The attempted hack targeting NASA<\/strong>, however, failed. The space agency had already patched the software exploited by QTFY<\/strong> before the intrusion could succeed \u2014 a textbook example of effective vulnerability management<\/a><\/strong>. This detail underscores the critical importance of security updates<\/strong> in protecting sensitive infrastructure.<\/p>\n\n\n\n

The DOJ’s correction therefore mechanically reduces the official toll of this long-running cyberespionage<\/strong> campaign against U.S. networks. It also raises a fundamental question: how did an agency as rigorous as the Department of Justice<\/strong> manage to publish a press release so far removed from the facts established in its own affidavit? For players in the cybersecurity<\/strong> space \u2014 and for crypto markets<\/a> closely monitoring systemic risks tied to financial infrastructure<\/strong> \u2014 this kind of official imprecision only fuels legitimate distrust toward institutional communications in times of crisis.<\/p>\n\n\n\n

\n\n\n\n

Related articles :<\/h3>\n\n\n\n