US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.

Hack on US Treasury blamed on China causes fear in cybersecurity community


Cody Combs
  • English
  • Arabic

After unclassified documents from the US Treasury Department were accessed in a hack blamed on China, many in the cybersecurity community are wondering how such breaches might intensify in the weeks and months ahead.

“I know a lot of cybersecurity vendors are now worried about getting hit themselves,” said a media-relations professional with various technology clients. “As a result, they’re taking the line of not jumping on top of someone else’s misfortune.”

The Treasury Department sent a letter to US senators on Monday saying that third-party software provider BeyondTrust had disclosed that a “threat actor” gained “access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices end users”.

In a statement provided to The National, BeyondTrust said that it had notified a limited number of customers who were affected, and that it has been working to support the customers since then.

“BeyondTrust previously identified and took measures to address a security incident in early December 2024 that involved the Remote Support product,” read the statement. It added that only the company's Remote Support product had been compromised.

“Law enforcement was notified and BeyondTrust has been supporting the investigative efforts.”

The company also said it had posted an entire timeline of the hack and would continue updating affected customers.

A US Treasury Department letter sent to Congress after the hacking. Photo: Screengrab
A US Treasury Department letter sent to Congress after the hacking. Photo: Screengrab

China has repeatedly denied involvement in the hacking, with a Foreign Ministry representative saying that the accusations were “groundless” and “lacking evidence”.

According to the letter from the Treasury Department, through the “key”, the hacker was able to gain access to certain government workstations – with that access limited to unclassified documents.

“The analogy is a hacker breaks into your plumber's office and steals master keys to the buildings they service,” John Scott-Railton, a senior researcher with Citizen Lab, an interdisciplinary technology research lab based at the University of Toronto, wrote on X.

“Given BeyondTrust's big client list, makes one wonder if other customers were targeted,” he added, referring to clients such as Williams Sonoma, Carbonite, IHG Hotels and Resorts, Wynn Resorts and ServiceNow.

Heightened awareness due to Salt Typhoon cyber attack

The recent compromise of the Treasury Department comes weeks after what has become known as the Salt Typhoon cyber breach, flagged by US cybersecurity officials in early December.

In that particular breach, Washington agencies accused China of sponsoring an attack that infiltrated at least nine US communications companies and potentially left American consumers vulnerable.

As a result of Salt Typhoon and other recent accusations against China-based hackers, the Cybersecurity and Infrastructure Security Agency, issued guidance for “highly targeted individuals” in the US to protect their mobile devices and personal communication computer systems.

The US Cybersecurity and Infrastructure Security Agency's new guidance for highly vulnerable users. Photo: Screengrab
The US Cybersecurity and Infrastructure Security Agency's new guidance for highly vulnerable users. Photo: Screengrab

“Use only end-to-end encrypted communications,” reads one of the guidance suggestions from CISA in the long list compiled by the agency. “Migrate away from short message service-based multi factor authorisation,” reads another on the list, which also has specific instructions for iPhone and Android platform users.

Ongoing technology tension between US and China

In early December during a panel discussion hosted by the Centre for Strategic and International Studies, Kara Frederick, director of the tech policy centre for The Heritage Foundation, a conservative think tank, spoke about an increasingly problematic national security outlook when it comes to China, and that US tech companies needed to scale back efforts in the country.

“US big tech companies are going to have to pick a flag, and it should be the stars and bars and not China. I think the Trump administration will wake these companies up to that,” she said.

In a recent video posted by the select committee on the Chinese Communist Party, Republican Representative John Moolenaar did not mince words about tension between the US and China over technology.

“The select committee has made incredible progress in combating China's maligned influence within the United States,” Mr Moolenaar said, pointing out the recent bill that seeks to ban TikTok in the US due to national security concerns.

That bill is being challenged by ByteDance, the Beijing-based owner of TikTok, in the US Supreme Court, which will hear legal arguments from the company that is hoping to keep the social media platform operating in the US.

“With steadfast support from both [House Speaker Mike Johnson and minority leader Hakeem Jeffries] I look forward to continuing to lead this excellent group of lawmakers for another two years in continuing our bipartisan work to stand up to the Chinese Communist Party to protect American interests at home and abroad,” said Mr Moolenaar.

Sole survivors
  • Cecelia Crocker was on board Northwest Airlines Flight 255 in 1987 when it crashed in Detroit, killing 154 people, including her parents and brother. The plane had hit a light pole on take off
  • George Lamson Jr, from Minnesota, was on a Galaxy Airlines flight that crashed in Reno in 1985, killing 68 people. His entire seat was launched out of the plane
  • Bahia Bakari, then 12, survived when a Yemenia Airways flight crashed near the Comoros in 2009, killing 152. She was found clinging to wreckage after floating in the ocean for 13 hours.
  • Jim Polehinke was the co-pilot and sole survivor of a 2006 Comair flight that crashed in Lexington, Kentucky, killing 49.
UAE currency: the story behind the money in your pockets
Brief scores:

Toss: India, opted to field

Australia 158-4 (17 ov)

Maxwell 46, Lynn 37; Kuldeep 2-24

India 169-7 (17 ov)

Dhawan 76, Karthik 30; Zampa 2-22

Result: Australia won by 4 runs by D/L method

Election pledges on migration

CDU: "Now is the time to control the German borders and enforce strict border rejections" 

SPD: "Border closures and blanket rejections at internal borders contradict the spirit of a common area of freedom" 

ELIO

Starring: Yonas Kibreab, Zoe Saldana, Brad Garrett

Directors: Madeline Sharafian, Domee Shi, Adrian Molina

Rating: 4/5

In-demand jobs and monthly salaries
  • Technology expert in robotics and automation: Dh20,000 to Dh40,000 
  • Energy engineer: Dh25,000 to Dh30,000 
  • Production engineer: Dh30,000 to Dh40,000 
  • Data-driven supply chain management professional: Dh30,000 to Dh50,000 
  • HR leader: Dh40,000 to Dh60,000 
  • Engineering leader: Dh30,000 to Dh55,000 
  • Project manager: Dh55,000 to Dh65,000 
  • Senior reservoir engineer: Dh40,000 to Dh55,000 
  • Senior drilling engineer: Dh38,000 to Dh46,000 
  • Senior process engineer: Dh28,000 to Dh38,000 
  • Senior maintenance engineer: Dh22,000 to Dh34,000 
  • Field engineer: Dh6,500 to Dh7,500
  • Field supervisor: Dh9,000 to Dh12,000
  • Field operator: Dh5,000 to Dh7,000
Essentials

The flights

Emirates and Etihad fly direct from the UAE to Geneva from Dh2,845 return, including taxes. The flight takes 6 hours. 

The package

Clinique La Prairie offers a variety of programmes. A six-night Master Detox costs from 14,900 Swiss francs (Dh57,655), including all food, accommodation and a set schedule of medical consultations and spa treatments.

Tightening the screw on rogue recruiters

The UAE overhauled the procedure to recruit housemaids and domestic workers with a law in 2017 to protect low-income labour from being exploited.

 Only recruitment companies authorised by the government are permitted as part of Tadbeer, a network of labour ministry-regulated centres.

A contract must be drawn up for domestic workers, the wages and job offer clearly stating the nature of work.

The contract stating the wages, work entailed and accommodation must be sent to the employee in their home country before they depart for the UAE.

The contract will be signed by the employer and employee when the domestic worker arrives in the UAE.

Only recruitment agencies registered with the ministry can undertake recruitment and employment applications for domestic workers.

Penalties for illegal recruitment in the UAE include fines of up to Dh100,000 and imprisonment

But agents not authorised by the government sidestep the law by illegally getting women into the country on visit visas.

Real estate tokenisation project

Dubai launched the pilot phase of its real estate tokenisation project last month.

The initiative focuses on converting real estate assets into digital tokens recorded on blockchain technology and helps in streamlining the process of buying, selling and investing, the Dubai Land Department said.

Dubai’s real estate tokenisation market is projected to reach Dh60 billion ($16.33 billion) by 2033, representing 7 per cent of the emirate’s total property transactions, according to the DLD.

WOMAN AND CHILD

Director: Saeed Roustaee

Starring: Parinaz Izadyar, Payman Maadi

Rating: 4/5

The five pillars of Islam

1. Fasting

2. Prayer

3. Hajj

4. Shahada

5. Zakat 

The National's picks

4.35pm: Tilal Al Khalediah
5.10pm: Continous
5.45pm: Raging Torrent
6.20pm: West Acre
7pm: Flood Zone
7.40pm: Straight No Chaser
8.15pm: Romantic Warrior
8.50pm: Calandogan
9.30pm: Forever Young

Updated: January 02, 2025, 11:42 PM`