FBI Nabs 13 Chinese Sites TARGETING Americans!

FBI website shown through magnifying glass.

A quiet set of “consulting” websites just exposed how far China’s spies will go to buy American secrets without firing a shot.

Story Snapshot

  • Federal agents seized 13 fake consulting domains they say targeted Americans with security clearances.
  • Justice Department officials allege suspected Chinese agents offered cash for “research” that sounded a lot like classified intel.[5]
  • The operation used fake identities, artificial intelligence photos, encrypted apps, and cryptocurrency to hide the money trail.[2][5]
  • The case fits a growing pattern: Beijing hunts our former officials online, while keeping its own fingerprints just out of public view.[1][4][5]

How 13 “Consulting” Websites Turned Into a Counterintelligence Crime Scene

Federal investigators say the story began in November 2023, when conspirators quietly stood up a network of at least 13 fake consulting company websites.[1][2][5] On the surface, these sites looked normal: sleek branding, global buzzwords, and generic promises of “insight” and “analysis.” Behind the scenes, the Justice Department says they were bait for a very specific catch—current and former United States government and military employees with access to real secrets, not generic policy chatter.[1][2][5]

According to court documents, the scheme did not rely on one lonely webpage in a dark corner of the internet.[2] The operators pushed job postings across social media and hiring platforms like Upwork, Wellfound, and other freelance boards where cleared Americans often look for “side work.”[2] The roles had impressive titles—“Senior Analyst,” “International Affairs Consultant”—and focused on topics that track with the interests of the government of the People’s Republic of China.[2][5] That is not random; that is targeting.

The Pitch: “Consulting” That Quietly Pressures You To Break Your Oath

The job ads promised research work for unnamed “clients” and asked for reports on sensitive regions and military or geopolitical issues.[2] On paper, that can sound harmless; Washington runs on think-tank reports and contractor memos. But the affidavit says recruiters pressured applicants to provide “exclusive” and “insider” information, in some cases in direct conflict with their official duties and secrecy agreements.[2] That kind of language crosses the line from open analysis into paid espionage in everything but name.[2][5]

The alleged carrot was money, and plenty of it for busy professionals.[1][2] The Justice Department says conspirators offered relatively large payments for written reports, funneled through online payment accounts, fake personas, and cryptocurrency wallets.[2][5] Those payments, according to prosecutors, moved from accounts overseas into accounts in the United States, which underpins the charges of international money laundering tied to bribery of current and former public officials.[2] That is the kind of thing everyday Americans would recognize as classic “follow the money” territory.

The Tradecraft: Fake Names, Stolen Faces, and Digital Smoke Screens

Court filings describe tradecraft that feels ripped from a spy thriller, only cheaper and powered by off-the-shelf tech.[2][5] The conspirators allegedly used aliases, fictitious personas, and even the stolen identities of real people to staff their fake firms.[2] They generated profile photos using artificial intelligence to dodge standard reverse-image checks.[2][5] They moved conversations to encrypted messaging apps like Telegram, and then routed payments through cryptocurrency, which they used to hide both who was paying and where the money really came from.[1][2][5]

The Justice Department and the Federal Bureau of Investigation (FBI) say this package of tactics matches what they see from Chinese intelligence services more broadly.[4][5] Officials have not, at least publicly, named a specific Chinese spy agency or officer running this effort.[1][5] That gap gives Beijing room to deny everything, and the conspirators have in fact denied foreign-government involvement.[1][2] But American counterintelligence officials argue the mix of tradecraft, targets, and topics looks a lot less like random fraud and a lot more like state-directed collection.[4][5]

Why This Fits a Larger Pattern of Chinese Targeting of American Insiders

This case did not land in a vacuum. Earlier this month, the Five Eyes alliance of the United States, United Kingdom, Canada, Australia, and New Zealand warned that Chinese military intelligence is actively trying to recruit Western insiders online.[1][5] The alleged fake consulting network looks like a live example of that warning: it chases retired officers, former intelligence staff, and policy experts who still know where the lines are—and how to step just over them for “just one report.”[1][4][5]

The Justice Department notes that prior cases, like that of former Central Intelligence Agency officer Kevin Mallory, followed a similar arc: “consulting” offers, foreign travel, cash, and then a trail of secrets handed over one document at a time.[4][5] From a conservative, common-sense view, the pattern matters. A rival power that runs this play again and again is not a confused partner; it is an adversary probing for weak spots in America’s human defenses, hoping that financial stress or flattery can do what hacking sometimes cannot.[4][5]

Why the Seizure Matters—and What We Still Do Not Know

By seizing the domains and replacing them with FBI warning pages, federal agents cut off one pipeline that allegedly moved money and tasking instructions between suspected Chinese operators and Americans with sensitive knowledge.[2] That is an enforcement step based on probable cause, not yet a full trial record.[1][5] The public has not seen the underlying server logs, payment chains, or the names of any foreign officers, so the best forensic evidence remains locked inside court files and classified folders.[1][5]

That secrecy cuts both ways. It makes it harder for critics to test the case in detail, which can leave the government narrative standing by default. It also means current and former officials must rely on patterns and prudence. The basic lesson is simple enough for any citizen to grasp: when a slick “consulting firm” you never heard of wants to pay top dollar for “insider” reports on issues Beijing cares about, that is not just a side gig. That is a national security trap with a login page.

Sources:

[1] Web – FBI Seizes Fake Domains in Devastating New Blow to Chinese Intel …

[2] YouTube – FBI Seizes Alleged China Linked Websites Targeting Security …

[4] Web – The FBI and our partners have seized domains associated with …

[5] X – US seizes 13 website domains tied to alleged Chinese intelligence …

© targetdailynews.com 2026. All rights reserved.