logo

US Treasury Department breached through remote support platform

ID: 9041d74d-c2da-5041-a867-b450f0277c33

STIX ID: report--9041d74d-c2da-5041-a867-b450f0277c33

Feed Name: Bleeping Computer

Threat Score
90/100

Date Published: 2024-12-30

Date Updated: 2026-03-27

Author: Lawrence Abrams

...
...

Chinese state-sponsored APT actors exploited two zero-day vulnerabilities in BeyondTrust's Remote Support SaaS to breach a vendor instance used by the U.S. Treasury, enabling remote access to agency computers and theft of documents; the incident is linked to broader campaigns (including actor 'Salt Typhoon') that also targeted multiple telecom providers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.