U.S. Treasury Department Hacked By China

Dollar with US Treasury.

At a time when things are already tense between the United States and China, a China-based threat actor successfully hacked the U.S. Treasury Department. This comes on the heels of another major breach by Chinese hackers.

Another Espionage Mission

This latest cyberattack appears to be another espionage mission, much like the recent attacks by the Chinese intelligence group known as Salt Typhoon on major U.S.-based telecommunications companies. In fact, AT&T and Verizon were recently hit, though they gave assurances that their networks are now secure.

The U.S. Treasury Department was hacked on December 8, 2024, though the incident is just now being reported. It appears to intelligence officials to be yet another espionage mission to learn more details about the U.S.’s finances, global finances, and what the U.S. knows about China’s economic situation.

You've been hacked sign on laptop.
Image source: Pexels

The Treasury Department is also involved in sanctions against Russia, along with others who may be aiding them in the attack against Ukraine. Since Russia has asked for China’s assistance, any insider information would be beneficial.

With Salt Typhoon, the goal is to gather intelligence by listening to and recording phone calls and text messages. And, with deep enough access, geolocate individuals if needed.

A Chinese state-sponsored APT (advanced persistent threat) actor has shown that hackers can breach one of the largest U.S. federal departments.

For now, it doesn’t appear this particular cyberattack has anything to do with inserting malicious code into any form of infrastructure. It’s entirely about spying.

Access via Third-Party Software

Surprisingly, the breach didn’t originate directly from the Treasury Department. Instead, it started with BeyondTrust, a third-party software. It was used to provide remote technical support for Treasury Department employees.

The hacker was able to steal a key that allowed them to completely bypass some Treasury Department employees’ devices. Currently, officials are saying only some unclassified documents were accessed and stolen. The department is working alongside the FBI and others in the intelligence community to determine if anything else may have been accessed.

FBI logo
Image source: Unsplash

This is likely tied to a breach BeyondTrust had back on December 2, 2023. While the company took action quickly, the threat actor was still able to use the stolen key to hack the Treasury Department.

While BeyondTrust is still operating, it’s no longer tied to the Treasury Department or other government entities. This should remove any access the hacker(s) had.

China has, of course, denied any involvement in any of these serious cyberattacks, implying the hackers worked without government support or approval.

Not Great News for TikTok

If you’ve been following the news about TikTok, you already know the Supreme Court is giving the parent company, ByteDance, one last chance to plead its case. Considering the entire reason the U.S. government wants the app banned is suspicions of espionage, this latest breach with the Treasury Department getting hacked could spell disaster for the popular app. However, the Trump presidency could still save it.

Image credit: Pexels

Subscribe to our newsletter!

Our latest tutorials delivered straight to your inbox

Crystal Crowder Avatar

Read next

In 2016, archaeologists dated two rings of snapped stalagmites in France’s Bruniquel Cave to 176,500 years ago, evidence that Neanderthals had walked 336 metres into darkness with fire and built architecture deep underground long before modern humans reached Europe
Otto von Bismarck was 74 when Germany adopted the world’s first national old-age social insurance program in 1889, setting the pension age at 70 after years of fighting socialists with bans, laws, and a promise few workers would live long enough to use
When cosmonaut Valeri Polyakov stepped out of his Soyuz capsule in March 1995 after 437 consecutive days aboard Mir, doctors recorded him at several centimetres above his pre-flight height, and his spine had become so unaccustomed to gravity that the recovery team carried him to a chair rather than risk the compression of letting him walk.
When Bell Labs engineer Karl Jansky pointed a rotating antenna at the sky in 1932 looking for sources of transatlantic radio static, he kept picking up a faint hiss that peaked every 23 hours and 56 minutes, and he eventually realized he had become the first human to hear the center of the Milky Way.
When Harvard astronomer Cecilia Payne submitted her 1925 doctoral thesis arguing that the Sun was made almost entirely of hydrogen, the field’s senior figure Henry Norris Russell talked her into adding a line calling the result ‘almost certainly not real,’ and then published the same conclusion himself four years later to widespread acclaim.
When seismic waves from the Chicxulub impact reached what is now North Dakota roughly ten minutes after the asteroid struck, they appear to have triggered a ten-metre standing wave in an inland river that flung fish onto the bank and buried them under glass beads still falling from the sky.
When survivors near Lake Nyos woke on the morning of 22 August 1986, the cattle were dead in the fields, the birds had fallen out of the trees, and 1,746 of their neighbours were lying where they had stood the night before, with no fire, no flood, and no wound to explain it.
In October 2002, a Russian scientist named Dimitri Malashenkov stood up at a space conference in Houston and quietly explained that the dog Laika, whom the Soviet Union had publicly mourned as a heroic week-long orbiter in 1957, had actually died of heat and panic within about five hours of launch.