Friday, 3 January 2025
27.5 C
Singapore

US Treasury Department faces major security breach

The US Treasury Department faced a cyberattack linked to a China-state-sponsored hacker exploiting third-party software. No ongoing access was found.

You may be alarmed to learn that the US Treasury Department has suffered a significant cyberattack. A China state-sponsored hacker has been linked to the breach, which exploited third-party remote management . This unsettling incident, first reported by The New York Times, has raised serious concerns about cybersecurity in critical government agencies.

The breach details revealed

On December 8, the Treasury Department received an alert from BeyondTrust, which provides its remote management software. BeyondTrust informed the agency that a threat actor had stolen a key to secure its cloud-based service. This service is vital for technical support to Treasury employees in the Departmental Offices (DO).

The hacker bypassed measures using the stolen key and accessed user workstations remotely. The breach also allowed them to retrieve โ€œsome unclassified documentsโ€ stored on these systems. While these documents were not classified, their exposure underscores the severity of the incident.

Following the breach, the Treasury Department immediately sought help from the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI. The incident was attributed to an Advanced Persistent Threat (APT) group with links to the Chinese government.

BeyondTrust’s role in the attack

The attack appears connected to an earlier incident disclosed by BeyondTrust, which affected customers using its remote support software. BeyondTrust revealed that an API key used in its software had been compromised. In response, the company revoked the API key, informed affected customers, and suspended impacted systems.

Despite the swift action, the breach underscores vulnerabilities in third-party software that could impact critical infrastructure. BeyondTrust has yet to provide additional comments on the matter despite outreach from media outlets.

Government response and strengthened defences

Michael Gwin, a spokesperson for the Treasury Department, assured the public that the compromised BeyondTrust service had been taken offline. He confirmed no evidence of ongoing access to Treasury systems or information by the threat actor.

โ€œTreasury takes all threats against our systems and the data it holds very seriously,โ€ Gwin said. He highlighted significant improvements in the agency’s cyber defences over the last four years and reaffirmed its commitment to working with public and private partners to safeguard the financial system.

This breach is a stark reminder of the persistent threats posed by state-sponsored cyberattacks. It also highlights the importance of securing third-party tools, which often serve as entry points for hackers.

Hot this week

Alibaba sells Sun Art hypermarket chain for US$1.7 billion to refocus on e-commerce

Alibaba sells Sun Art for US$1.7 billion, marking a strategic shift to focus on e-commerce and cloud computing while exiting brick-and-mortar retail.

How CDNs impact crawling and SEO explained by Google

Discover how CDNs impact crawling and SEO, their benefits for performance, and how to avoid pitfalls like server errors and blocked bots.

Lenovo Yoga Pro 9i review: A powerhouse for creators and professionals

Experience professional-grade performance with the Lenovo Yoga Pro 9i featuring a 16-inch Mini LED display, NVIDIA RTX 4070, and AI-powered tools.

Chinaโ€™s No. 2 chip foundry, Hua Hong, appoints former Intel executive as president

Hua Hong Semiconductor named former Intel executive Bai Peng president amid a management reshuffle and challenges in the Chinese chip industry.

You can now rent Googleโ€™s advanced AI chip: Trillium TPU powers Gemini 2.0 and challenges AMD and Nvidia

Googleโ€™s Trillium TPU is now available for rent. It offers unmatched AI training efficiency, energy savings, and powerful computing performance.

Can AI make better decisions than humans?

Explore how AI is transforming decision-making, from boosting efficiency to raising ethical questions, and how businesses can balance AI with human judgment.

JisuLife Handheld Fan Life9 review: Compact cooling power for on-the-go comfort

Stay cool on the go with the JisuLife Handheld Fan Life9. Compact, powerful, and stylish, it offers long battery life and adjustable speeds for ultimate comfort.

Baidu’s Robin Li predicts exponential AI boom by 2025

Baidu founder Robin Li predicts exponential growth in AI applications by 2025, driven by generative technologies and industry integration.

Alibaba sells Sun Art hypermarket chain for US$1.7 billion to refocus on e-commerce

Alibaba sells Sun Art for US$1.7 billion, marking a strategic shift to focus on e-commerce and cloud computing while exiting brick-and-mortar retail.

Related Articles