- home
- article
- US Treasury Department says it suffered a major cybersecurity breach at the hands of Chinese hackers
US Treasury Department says it suffered a major cybersecurity breach at the hands of Chinese hackers
ai generated text
Multiple sources confirm that the US Treasury Department suffered a cyber breach in early December. The breach was attributed to Chinese state-sponsored hackers, who accessed several workstations and viewed unclassified documents. The hackers gained access to a cloud-based service through a third-party cybersecurity service provider, BeyondTrust. The Treasury Department characterized the breach as a "major cybersecurity incident" and is taking the breach seriously. There is currently no evidence to suggest that the hackers continue to have access to Treasury information.
The US needs to stop using cyber security to smear and slander China, and stop spreading all kinds of disinformation about the so-called Chinese hacking threats.
We hope that relevant parties will adopt a professional and responsible attitude when characterizing cyber incidents, basing their conclusions on sufficient evidence rather than unfounded speculation and accusations.
Over the last four years, Treasury has significantly bolstered its cyber defence, and we will continue to work with both private and public sector partners to protect our financial system from threat actors.
The compromised BeyondTrust service has been taken offline and there is no evidence indicating the threat actor has continued access to Treasury systems or information.
With access to the stolen key, the threat actor was able to override the service's security, remotely access certain Treasury DO user workstations, and access certain unclassified documents maintained by those users.
In accordance with Treasury policy, intrusions attributable to an APT are considered a major cybersecurity incident.
Based on available indicators, the incident has been attributed to a China state-sponsored Advanced Persistent Threat (APT) actor.
Cyberattack on US Treasury Department
- United States charges Chinese officials and hackers with participating in a state-sponsored campaign of cyber espionage against the country's government agencies
- China denies accusations it targeted US Treasury in cyber attack
sources
- 1.ABC News (Australia)
- 2.Le Monde
- 3.The Times
- 4.BBC
- 5.The New York Times
- 6.The Times of India
- 7.Al Jazeera
- 8.The Guardian
- 9.CTV News
- 10.Agence France-Presse
- 11.Associated Press
- 12.CNN
perspectives
countries
organizations
- 1.US Treasury Department
- 2.BeyondTrust
- 3.Federal Bureau of Investigation
- 4.Salt Typhoon
- 5.Cybersecurity and Infrastructure Security Agency
- 6.White House
- 7.Senate Banking Committee
- 8.US Cybersecurity and Infrastructure Security Agency
- 9.Damascus Analysis
- 10.Democratic Party
- 11.Microsoft
- 12.NCSC-UK
persons
- 1.Aditi Hardikar
- 2.Keiran Southern
- 3.Richard Spencer
- 4.Bevan Hurley
- 5.Donald Trump
- 6.Gina Raimondo
- 7.James David Vance
- 8.Liu Pengyu
- 9.Samantha Sais
- 10.Tom Parfitt