FBI Seeks Fu Qiang in APT 41 Global Cyberattack and Ransomware Case

Chinese National Wanted in Major Cybercrime Investigation

Fu Qiang is wanted by the FBI for his alleged involvement in a wide-ranging international cybercrime operation connected to the Chinese hacking group known as APT 41, also called BARIUM. According to the FBI, Fu and other alleged members of the group carried out unauthorized computer intrusions targeting hundreds of companies and organizations around the world while Fu was employed by Chengdu 404 Network Technology Company.

APT 41 and BARIUM

The FBI identifies Fu as a member of APT 41, a hacking group accused of conducting extensive cyber operations against organizations in numerous industries and countries. Federal authorities allege that members of the group conducted supply-chain attacks designed to gain unauthorized access to computer networks.

These attacks allegedly allowed the defendants to compromise organizations across a broad range of industries. The FBI identifies social media, telecommunications, government, defense, education, and manufacturing among the sectors targeted by the group.

Hundreds of Companies Targeted

According to federal authorities, the alleged cyber operations affected hundreds of companies worldwide. Victims included companies located in Australia, Brazil, Germany, India, Japan, and Sweden, demonstrating the international reach of the alleged hacking activity.

Telecommunications companies were another major target. The FBI states that telecommunications providers in the United States, Australia, China’s Tibet region, Chile, India, Indonesia, Malaysia, Pakistan, Singapore, South Korea, Taiwan, and Thailand were allegedly targeted.

Supply-Chain Attacks

One of the major techniques described by federal authorities involved supply-chain attacks. Rather than limiting their activities to attacks against individual companies, the defendants allegedly sought access through technology and business relationships that could provide entry into additional networks.

Federal investigators allege that the group used unauthorized access to compromise protected computer systems and obtain information. The defendants are accused of participating in a sophisticated operation capable of affecting victims across numerous industries and countries.

Ransomware Attacks and Extortion

The FBI also alleges that Fu and his co-defendants deployed ransomware during their cyber operations. Victims were allegedly subjected to attacks that restricted access to computer systems or data, after which payments were demanded.

The ransomware allegations demonstrate that the case extends beyond unauthorized access and information theft. Federal authorities accuse the defendants of using compromised computer networks as part of financially motivated criminal activity as well.

Chengdu 404 Network Technology Company

Fu allegedly conducted the unauthorized computer intrusions while employed by Chengdu 404 Network Technology Company, according to the FBI. Two other Chinese nationals, Jiang Lizhi and Qian Chuan, were charged alongside him.

The three men are accused of participating in cyber operations connected with APT 41 while working for the Chengdu-based company. The FBI continues seeking all three men in connection with the federal prosecution.

Federal Indictment Returned

On August 11, 2020, a federal grand jury in the District of Columbia returned an indictment against Fu Qiang, Jiang Lizhi, and Qian Chuan. The defendants were charged with numerous federal offenses stemming from their alleged cyber activities.

Charges listed by the FBI include racketeering conspiracy, conspiracy, identity theft, aggravated identity theft, access device fraud, obtaining information through unauthorized access to protected computers, intentionally causing damage to protected computers, threatening to damage a protected computer, and money laundering.

The charges remain allegations unless and until proven through the judicial process.

FBI Description of Fu Qiang

The FBI lists Fu Qiang's date of birth as March 11, 1982, and identifies his birthplace as China. He is described as an Asian male with black hair and brown eyes. His nationality is listed as Chinese, and the FBI states that he speaks Chinese.

The Bureau identifies “StandNY” as an alias associated with Fu. Such aliases can be particularly relevant in cyber investigations, where individuals may interact with others through online identities rather than their legal names.

Ties to Chengdu, China

According to the FBI, Fu has ties to Chengdu, China. Chengdu is also significant to the investigation because of Fu's alleged employment with Chengdu 404 Network Technology Company.

Information concerning Fu's professional relationships, residences, online identities, travel, or associates could potentially assist investigators. Individuals who recognize Fu or the StandNY alias should provide relevant information directly to law enforcement.

FBI Washington Field Office Handling Case

The FBI's Washington Field Office is identified as the field office responsible for Fu's wanted case. He remains listed among the Bureau's cyber fugitives alongside other individuals associated with APT 41.

Anyone with information concerning Fu Qiang is encouraged to contact a local FBI office or the nearest U.S. embassy or consulate. Information may also be submitted through the FBI's official online tip system.

Sources

FBI — Fu Qiang Wanted Profile

FBI — APT 41 Group Wanted Profile

FBI — Cyber Most Wanted

FBI — Submit a Tip

Paula Goodman

Criminal Investigative Journalist.

https://mostwantedlist.org
Previous
Previous

FBI Seeks Jiang Lizhi in APT 41 International Cyberattack and Ransomware Case

Next
Next

FBI Seeks Four Chinese Nationals in APT 40 Cyber Espionage Investigation