Summary

A Chinese state-sponsored hacker group breached the U.S. Treasury Department by exploiting a vulnerability in the third-party cybersecurity provider BeyondTrust.

The attackers used a stolen key to override security measures, accessing departmental workstations and unclassified documents.

The Treasury Department, alerted on December 8, reported no evidence of ongoing access.

The department is working with the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI to investigate the breach, which highlights risks tied to third-party software vulnerabilities.

  • JustinA
    link
    fedilink
    English
    arrow-up
    14
    arrow-down
    3
    ·
    5 days ago

    Sounds like their contractors have shoddy security practices.

    Also, stop using windows in high security environments!

    • deadbeef79000@lemmy.nz
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      2 days ago

      I mean, windows itself can be reasonably secured. All the “security” crapware that CxO’s get sold by shysters become the attack vectors.