FBI Probe Into Chinese Espionage Front Ensnares a Small Brisbane Consultancy
A legitimate Australian firm called Horizzen found itself flooded with job applications meant for a fake version of its business. That fake site was one of 13 seized by the US Department of Justice as part of an alleged Chinese espionage operation.

Key points
- The US Department of Justice seized 13 websites in mid-2025 linked to an alleged Chinese espionage network.
- One seized site impersonated Horizzen, a real, small consultancy based in Brisbane, Australia.
- The fake site attracted job applications from people claiming defence and security credentials, apparently targeted by the operation.
- Horizzen had no involvement in the scheme and learned of it only through a flood of unsolicited emails and phone calls.
- The FBI is leading the investigation into the network of fraudulent front companies.
A small Brisbane consultancy called Horizzen began receiving odd emails in mid-2025. Strangers were applying for jobs the firm had never advertised, citing vague backgrounds in defence and security. The calls kept coming. So did the emails.
The explanation, when it arrived, was remarkable. Somebody had built a fake version of Horizzen online, complete enough to fool job seekers, and was using it as a front. That counterfeit site was one of 13 websites the US Department of Justice seized as part of an investigation into what American authorities describe as a Chinese espionage operation, first reported in detail by Guardian Australia. It's the kind of brand-cloning we've tracked since covering a nine-year Russian impersonation scheme on 29 July, though the espionage angle here is a different order of threat.
What exactly is a front company, and why does it matter?
A front company is a business that looks real but exists mainly to hide something else. Here, it recruits people with sensitive knowledge without revealing who is actually doing the hiring. Investigators believe the fake sites were designed to target individuals with defence or government backgrounds in Western countries.
By impersonating a legitimate firm, the operators borrowed Horizzen's credibility. Horizzen itself is an innocent party. Its staff noticed something was wrong only because the fake site generated real-world noise: strangers landing in their inboxes, asking about positions that didn't exist.
What happened to the fake sites?
Seizure means federal authorities took control of the web addresses so they can no longer be used. The FBI is leading the probe, and the DOJ confirmed all 13 domains are now under federal control.
| Detail | Fact |
|---|---|
| Websites seized | 13 |
| Operation start (approx.) | Mid-2025 |
| Real firm impersonated | Horizzen, Brisbane |
| Lead agency | FBI / US Department of Justice |
| Alleged origin | China |
Should people who applied to those sites be concerned?
Yes, cautiously. Anyone who submitted a CV or personal details through one of the fake sites should assume that information is now in the hands of the people who ran the operation. That could mean name, contact details, employment history, or any claimed security clearances.
If you applied for a job at a firm you can't now verify, especially one tied to defence or government work, notify your employer's security team. In Australia, report to the Australian Signals Directorate. US applicants can file with the FBI's Internet Crime Complaint Center (IC3).
For companies, the Horizzen case is a plain reminder that criminals can clone your brand without your knowledge. A monthly search of your company name, combined with alerts on new domain registrations that look like your own, costs nothing and catches impersonation early.
The detail that stands out most to anyone who's followed this beat: the targets weren't hacked, they walked in voluntarily, handing over credentials to what looked like a routine recruiter.



