“A Major Incident”: Chinese Hacker Allegedly Hacked the US Treasury

A Chinese state-sponsored hacker breached the cybersecurity of the US Treasury Department’s systems earlier this month and accessed some unclassified documents, an official letter from US lawmakers confirmed, labelling the breach “a major incident.”

A Major Security Breach

The letter, reviewed by multiple media outlets (including Finance Magnates), detailed that the hacker gained access to US Treasury employee workstations. However, the goal was not to steal funds but to access documents.

The incident came to light as BeyondTrust, a third-party cybersecurity provider, confirmed that the hacker compromised their systems to penetrate the Treasury Department’s computers.

Janet Yellen, Secretary of the Treasury

“A threat actor gained access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices (DO) end users,” the letter to the lawmakers from the US Treasury Department stated.

“With access to the stolen key, the threat actor was able to override the service’s security, remotely access certain Treasury DO user workstations, and access certain unclassified documents maintained by those users.”

BeyondTrust first spotted the suspicious activity on 2 December but took three days to confirm any security breach. The company informed the Treasury Department about the attack on 8 December.

Since the attack, the compromised BeyondTrust service has been taken offline. The letter also highlighted no evidence that the hacker still has access to the Treasury network.

The Treasury Department will provide another supplemental report on the incident to US lawmakers in the next 30 days.

China Denies the Allegations

Despite the US’ bold letter, a spokesperson for the Chinese embassy in Washington, D.C., spoke to the BBC, denying the allegation of the state’s involvement and calling it a “smear attack” made “without any factual basis,” highlighting that it can be difficult to trace hackers’ origin.

“We hope that relevant parties will adopt a professional and responsible attitude when characterising cyber incidents, basing their conclusions on sufficient evidence rather than unfounded speculation and accusations,” the spokesperson stated.

“The US needs to stop using cybersecurity to smear and slander China and stop spreading all kinds of disinformation about the so-called Chinese hacking threats.”

A Chinese state-sponsored hacker breached the cybersecurity of the US Treasury Department’s systems earlier this month and accessed some unclassified documents, an official letter from US lawmakers confirmed, labelling the breach “a major incident.”

A Major Security Breach

The letter, reviewed by multiple media outlets (including Finance Magnates), detailed that the hacker gained access to US Treasury employee workstations. However, the goal was not to steal funds but to access documents.

The incident came to light as BeyondTrust, a third-party cybersecurity provider, confirmed that the hacker compromised their systems to penetrate the Treasury Department’s computers.

Janet Yellen, Secretary of the Treasury

“A threat actor gained access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices (DO) end users,” the letter to the lawmakers from the US Treasury Department stated.

“With access to the stolen key, the threat actor was able to override the service’s security, remotely access certain Treasury DO user workstations, and access certain unclassified documents maintained by those users.”

BeyondTrust first spotted the suspicious activity on 2 December but took three days to confirm any security breach. The company informed the Treasury Department about the attack on 8 December.

Since the attack, the compromised BeyondTrust service has been taken offline. The letter also highlighted no evidence that the hacker still has access to the Treasury network.

The Treasury Department will provide another supplemental report on the incident to US lawmakers in the next 30 days.

China Denies the Allegations

Despite the US’ bold letter, a spokesperson for the Chinese embassy in Washington, D.C., spoke to the BBC, denying the allegation of the state’s involvement and calling it a “smear attack” made “without any factual basis,” highlighting that it can be difficult to trace hackers’ origin.

“We hope that relevant parties will adopt a professional and responsible attitude when characterising cyber incidents, basing their conclusions on sufficient evidence rather than unfounded speculation and accusations,” the spokesperson stated.

“The US needs to stop using cybersecurity to smear and slander China and stop spreading all kinds of disinformation about the so-called Chinese hacking threats.”

This post is originally published on FINANCEMAGNATES.

  • Related Posts

    Tariff Madness Continues as Capital.com Q2 Trades Rise 22%, Volume Hits $850 Billion

    FM Home > Retail FX > Tariff Madness Continues as Capital.com Q2 Trades Rise 22%, Volume Hits $850 Billion Tariff Madness Continues as Capital.com Q2 Trades Rise 22%, Volume Hits…

    London-based Trading Technology Provider MahiMarkets Joins Match-Trader for Unified Pricing

    Match-Trader has announced a new integration with MahiMarkets, bringing pricing technology into its trading infrastructure. The partnership aims to improve price formation and spread management tools for brokers, proprietary trading…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    Tariff Madness Continues as Capital.com Q2 Trades Rise 22%, Volume Hits $850 Billion

    • July 30, 2025
    Tariff Madness Continues as Capital.com Q2 Trades Rise 22%, Volume Hits $850 Billion

    London-based Trading Technology Provider MahiMarkets Joins Match-Trader for Unified Pricing

    • July 30, 2025
    London-based Trading Technology Provider MahiMarkets Joins Match-Trader for Unified Pricing

    AI Adoption Grows in Israel’s Fintech Community – Not Without Caveats

    • July 30, 2025
    AI Adoption Grows in Israel’s Fintech Community – Not Without Caveats

    Silver Faces Turning Point Amid US Dollar Surge. Forecast as of 30.07.2025

    • July 30, 2025
    Silver Faces Turning Point Amid US Dollar Surge. Forecast as of 30.07.2025

    24/5 Trading? eToro Should Be Cautious of Tech Limits – Just Ask Robinhood

    • July 30, 2025
    24/5 Trading? eToro Should Be Cautious of Tech Limits – Just Ask Robinhood

    B2BROKER and Nullpoint Partner to Integrate B2COPY Copy Trading Solution

    • July 30, 2025
    B2BROKER and Nullpoint Partner to Integrate B2COPY Copy Trading Solution