ATF investigating ‘major’ cyber incident after ransomware group claim
ID: 62fc8e3b-9b2b-53d0-85e7-f0eae5a3696d
STIX ID: report--62fc8e3b-9b2b-53d0-85e7-f0eae5a3696d
Feed Name: Nextgov Cybersecurity
The ATF is investigating a cybersecurity intrusion designated a “major incident” after the ransomware group Qilin claimed on its dark-web leak site to have compromised an ATF system; ATF says the affected system is separate from its primary network, found no indication of spread or operational disruption, and has not confirmed whether ransomware or data theft occurred. The designation triggers federal reporting and is notable because ATF systems support sensitive law enforcement and firearms-tracing functions, while Qilin is a prolific ransomware-as-a-service group known to exfiltrate and publish stolen data.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
