Skip to content
← Back to newsChina Rejects Hacking Claims After Major US Treasury Breach
Security

China Rejects Hacking Claims After Major US Treasury Breach

By ToTo BugelmanNewcomer0 rep· 12/31/2024

A significant cyber breach at the U.S. Treasury Department has raised alarms, with U.S. officials attributing the attack to Chinese state-sponsored hackers. China has vehemently denied these allegations, calling them a baseless smear campaign.

 

Key Takeaways

  • U.S. Treasury claims a major breach occurred, with hackers accessing unclassified documents.

  • The breach was linked to a third-party cybersecurity provider, BeyondTrust.

  • China denies involvement, labeling the accusations as unfounded.

 

Overview Of The Breach

In early December, the U.S. Treasury Department reported a major cyber incident involving unauthorized access to its computer systems. The breach was discovered on December 8, but preliminary investigations indicated that the hackers had gained access as early as December 2. The attackers exploited vulnerabilities in a remote support service provided by BeyondTrust, a cybersecurity firm, which allowed them to access employee workstations and steal unclassified documents.

 

Details Of The Attack

The U.S. Treasury Department's letter to lawmakers outlined the following key points regarding the breach:

  1. Method of Attack: Hackers gained access through a compromised key used by BeyondTrust to secure a cloud-based service.

  2. Access Achieved: With this key, the attackers bypassed security measures and accessed several Treasury user workstations.

  3. Nature of Data Compromised: The documents accessed were unclassified, but the exact nature and sensitivity of the information remain unclear.

  4. Response Measures: BeyondTrust took immediate action to de-provision the compromised key and notified affected customers, including law enforcement agencies.

 

China's Response

In response to the allegations, a spokesperson for the Chinese Embassy in Washington dismissed the claims as a “smear attack” without factual basis. The Chinese government has consistently denied any involvement in cyberattacks against the U.S., asserting that such accusations are politically motivated.

 

Ongoing Investigations

The U.S. Treasury Department is currently collaborating with the FBI and other agencies to investigate the breach's impact. A closed-door briefing for the House Financial Services Committee is scheduled for next week to discuss the findings and implications of the incident. Officials have stated that there is no evidence suggesting that the hackers maintain ongoing access to Treasury systems.

 

Sources

Discussion (0)

Sign in to join the discussion.

No comments yet. Be the first.

China Rejects Hacking Claims After Major US Treasury Breach | BlockzHub