A Chinese state-sponsored actor compromised BeyondTrust, a third-party cybersecurity service provider, to break into the US Treasury Department and steal unclassified documents.
Hackers accessed a key used by BeyondTrust to secure a cloud-based service, which allowed them to remotely override security measures and access workstations.
Collection
[
|
...
]