U.S. Treasury Intrusion Highlights Third-Party Privileged-Access Risk
The Treasury Department was reportedly compromised through a trusted third-party security provider, with attackers allegedly overriding BeyondTrust controls and reaching workstations and unclassified documents. China attribution, access scope, data exposure, and links to broader espionage activity remain unresolved; congressional scrutiny may produce additional details.
Sources (3)
Updated Oct 7, 2026