CheapbookZ

Market Prices

Coin Price 24h
BTC Bitcoin
$78,785.7 +0.72%
ETH Ethereum
$2,475.45 +1.34%
SOL Solana
$103.27 +0.36%
BNB BNB Chain
$689.9 +0.33%
XRP XRP Ledger
$1.38 +0.91%
DOGE Dogecoin
$0.0834 +0.89%
ADA Cardano
$0.2009 +2.55%
AVAX Avalanche
$7.33 +1.41%
DOT Polkadot
$0.8718 +4.88%
LINK Chainlink
$11.49 +1.76%

Fear & Greed

69

Greed

Market Sentiment

Event Calendar

{{年份}}
15
04
halving Bitcoin Halving

Block reward reduced to 3.125 BTC

18
03
unlock Sui Token Unlock

Team and early investor shares released

12
05
halving BCH Halving

Block reward halving event

08
04
upgrade Solana Firedancer

Independent validator client goes live on mainnet

22
03
unlock Optimism Unlock

Circulating supply increases by about 2%

30
04
upgrade Celestia Mainnet Upgrade

Improves data availability sampling efficiency

28
03
unlock Arbitrum Token Unlock

92 million ARB released

10
05
upgrade Ethereum Pectra Upgrade

Raises validator limit and account abstraction

Altseason Index

41

Bitcoin Season

BTC Dominance Altseason

Gas Tracker

Ethereum 28 Gwei
BNB Chain 3 Gwei
Polygon 42 Gwei
Arbitrum 0.5 Gwei
Optimism 0.3 Gwei

Market Cap

All →
1
Bitcoin
BTC
$78,785.7
1
Ethereum
ETH
$2,475.45
1
Solana
SOL
$103.27
1
BNB Chain
BNB
$689.9
1
XRP Ledger
XRP
$1.38
1
Dogecoin
DOGE
$0.0834
1
Cardano
ADA
$0.2009
1
Avalanche
AVAX
$7.33
1
Polkadot
DOT
$0.8718
1
Chainlink
LINK
$11.49

🐋 Whale Tracker

🔴
0x003b...6b06
12m ago
Out
3,109.54 BTC
🔴
0x7ec4...2006
12h ago
Out
411 ETH
🔴
0x47a7...1ff2
3h ago
Out
23,458 BNB

💡 Smart Money

0x49f2...8e8d
Early Investor
+$4.2M
71%
0x76e2...ddf3
Arbitrage Bot
+$4.8M
87%
0xf917...e21c
Institutional Custody
+$4.8M
64%

🧮 Tools

All →
ETF

The Domain Was the Single Point of Failure: Dissecting the QTFY Takedown

CryptoIvy
The FBI and DOJ just dismantled a Chinese hacking operation that hit NASA, the Federal Reserve, and the US Senate. The court documents name QTFY, a contractor for Nanjing Xinjiuwei Network Technology, selling access to the Chinese Ministry of State Security and the PLA. The tools were QScan and QTRouter. The takedown was a domain seizure. That last detail is the one that matters. The code doesn't lie, but the infrastructure does. This is not a new story. The US has been playing this game since Volt Typhoon, through Flax Typhoon, through PlugX. Each time, the DOJ holds a press conference, the FBI director posts on X, and a Chinese contractor gets named. Each time, the infrastructure gets rebuilt. The pattern is the story. The domain seizure is the tell. QScan is an automated scanner that infects IoT devices. Cameras, routers, anything with a default password and a network connection. It builds a botnet. QTRouter is the confusion layer, routing traffic through commercial proxies and VPSes to obscure the origin. Together, they form a classic scan-infect-relay chain. The court filing confirms the domains were hardcoded into the tools for command-and-control authentication. No domains, no operation. That is a single point of failure. I measure risk in gas units, not in hope, and this is a gas leak. Here is what the official narrative misses. The DOJ calls QTFY a state-sponsored group. The same filing describes it as a commercial entity selling hacking services to paying customers. Both things are true. That is not a contradiction. That is a design pattern. The contractor model provides plausible deniability. The state gets the capability, the contractor gets the revenue, and the lawyers get a headache. This is the same structure I saw in the Olympus DAO bond contract in 2021, where the recursive yield loop was not a bug but a feature designed to drain liquidity. The architecture is the message. The TeamT5 report adds the signal that matters most. Chinese state-linked groups doubled their attack volume after handing routine tasks to AI models. Doubled. That is not a linear improvement. That is a phase change. AI is not just automating phishing emails. It is automating vulnerability discovery, target reconnaissance, and exploit generation. The attack surface is expanding faster than the defense surface. I spent two weeks in 2026 simulating an AI-agent exploit where a gas optimization flaw in an ERC-20 allowance interface let an autonomous agent be socially engineered at the code level. The same logic applies here. Automation amplifies both speed and error. Now the contrarian angle. The bulls on this story are the ones who think the takedown worked. They point to the domain seizure and declare victory. They are wrong, but not for the reason you think. The seizure did work. It disrupted the current operation. But it also revealed the strategic weakness. The Chinese infrastructure has a centralized dependency on DNS. That is a solvable problem. A P2P communication protocol, a blockchain-based DNS, or even a simple IP rotation would eliminate this single point of failure. The fact that they have not done this yet suggests either complacency or a deliberate choice to keep the infrastructure replaceable. The fork was inevitable; the error was optional. The deeper issue is the target selection. NASA, the Federal Reserve, the Department of Energy. This is not random intelligence gathering. This is strategic capability reconnaissance. They are mapping the terrain for a potential conflict. The attack volume doubling is not just a metric. It is a warning. The US response, a domain seizure, is a tactical win and a strategic admission. It says we can disrupt your current tools, but we cannot stop your next iteration. Based on my audit experience, I have seen this pattern before. In 2017, I traced transaction hashes on Ethereum Classic after the 51% attack. The community called it a governance failure. I called it a technical inevitability. The same logic applies here. The domain seizure is not a governance failure. It is a technical inevitability. The infrastructure was designed to be disposable. The question is not whether they will rebuild. The question is what they will build next. The AI integration is the variable that changes the timeline. If the attack volume has already doubled, and the tools are becoming more autonomous, then the defense side needs to automate its response. Human-in-the-loop verification is no longer sufficient. The loop is too slow. The attack is too fast. The code doesn't lie, but the AI does not care. So what is the takeaway? The domain seizure is a stopgap, not a solution. The real battle is in the AI layer, where the attack generation is becoming autonomous and the defense is still human-mediated. The next takedown will not be a domain seizure. It will be a model poisoning attack or a data poisoning attack on the training set. The infrastructure is the symptom. The AI is the disease. Chaos is just data waiting to be compiled, and the compiler is getting faster. The question is whether the defense can keep up with the compilation speed. I would not bet on it.

The Domain Was the Single Point of Failure: Dissecting the QTFY Takedown