China Hacked US Treasury via Third-Party Software
In early December, a China-based Advanced Persistent Threat (APT) actor gained unauthorized access to US Treasury Department systems via a compromised third-party service provider, BeyondTrust. The breach involved several employee workstations and some unclassified documents, prompting the Treasury Department to characterize the incident as a “major cybersecurity incident.” Investigations, involving the FBI and other agencies, are underway to assess the full impact. The Treasury Department has stated that the access has been stopped and will provide a supplemental report within 30 days.