China blamed by US for Treasury Department hack

Unclassified documents were stolen after a hack earlier this month, according to a letter sent by Treasury to Congress.

Chinese state-sponsored hackers were able to steal unclassified documents from United States Treasury workstations earlier this month, the US Treasury Department said.

China denied the allegation on Tuesday calling it “groundless”.

Hackers were able to compromise a third-party cybersecurity service provider and gain access to the documents in a “major incident”, the department said on Monday.

“[The hackers] gained access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices [DO] end users,” a letter sent by the US Treasury Department to Congress said.

“With access to the stolen key, the threat actor was able to override the service’s security, remotely access certain Treasury DO user workstations, and access certain unclassified documents maintained by those users.”

A statement from the Treasury said the department “takes very seriously all threats against our systems, and the data it holds”.

The Treasury Department was alerted to the hack by the cybersecurity provider, BeyondTrust on December 8. The department says it is working with the US Cybersecurity and Infrastructure Security Agency (CISA) and the FBI to assess the impact of the hack.

“The compromised BeyondTrust service has been taken offline and there is no evidence indicating the threat actor has continued access to Treasury systems or information,” said a spokesperson for the Treasury Department.

The letter to the leadership of the US Senate Banking Committee directly accused China, saying the incident had been “attributed to a China state-sponsored Advanced Persistent Threat (APT) actor”.

An APT is a cyberattack where the hacker can maintain undetected and unauthorised access to a target for a period of time.

The Treasury Department said more information would be released in a supplemental report at a later date.

On Tuesday, China denied the claims with the Ministry of Foreign Affairs saying Beijing “has always opposed all forms of hacker attacks, and we are even more opposed to the spread of false information against China for political purposes”.

“We have stated our position many times regarding such groundless accusations that lack evidence,” Foreign Ministry spokesperson Mao Ning said.

Chinese ‘threats’

The allegations of the hack come less than a month ahead of the inauguration of US President-elect Donald Trump.

Trump has threatened China with a trade war and tariffs, saying that Beijing had not done enough to stop the flow of the opioid fentanyl to the US.

Both Trump’s Republicans and the Democrats have warned against Chinese threats against the US, particularly in the realm of cybersecurity.

In September, the US Justice Department said it stopped a cyberattack network run by Chinese-backed hackers that affected 200,000 devices worldwide.

Earlier in December, the US sanctioned a Chinese cybersecurity firm and a researcher over a 2020 attack that attempted to exploit a computer software vulnerability in company firewalls.

China has denied any involvement in the attacks and says that it opposes all forms of cyberattacks.

Read More

  • Related Posts

    Losses in China lead to $5B charge for General Motors as it cuts assets value

    This page either does not exist or is currently unavailable. From here you can either hit the “back” button on your browser to return to the previous page, or visit…

    China bans exports to the US of gallium and other key materials after the US curbs computer chip-related exports

    This page either does not exist or is currently unavailable. From here you can either hit the “back” button on your browser to return to the previous page, or visit…

    You Missed

    ANSWERS TO CORRESPONDENTS: Were trebuchets built in situ and then abandoned after a siege?

    • By admin
    • January 30, 2025
    • 1 views
    ANSWERS TO CORRESPONDENTS: Were trebuchets built in situ and then abandoned after a siege?

    Labour ministers are warned that previous inquiries into child sexual exploitation have either been too ‘broad’ or only focused on ‘specific places’

    • By admin
    • January 30, 2025
    • 1 views
    Labour ministers are warned that previous inquiries into child sexual exploitation have either been too ‘broad’ or only focused on ‘specific places’

    Grandmother’s sinister reason for injecting Mean Green Degreaser into seven-year-old girl’s feeding tube

    • By admin
    • January 30, 2025
    • 1 views
    Grandmother’s sinister reason for injecting Mean Green Degreaser into seven-year-old girl’s feeding tube

    EDEN CONFIDENTIAL: Peacemaker Duke of Marlborough tries to unite Elon Musk and Nigel Farage by inviting billionaire Tesla tycoon to Blenheim Palace

    • By admin
    • January 30, 2025
    • 1 views
    EDEN CONFIDENTIAL: Peacemaker Duke of Marlborough tries to unite Elon Musk and Nigel Farage by inviting billionaire Tesla tycoon to Blenheim Palace

    Bendigo Bank introduces $2.50 fee to withdraw your own money

    • By admin
    • January 30, 2025
    • 1 views
    Bendigo Bank introduces $2.50 fee to withdraw your own money

    How Aussie mum discovered $45,000 she didn’t know she had

    How Aussie mum discovered $45,000 she didn’t know she had