Skip to main content

Company intelligence

Treasury cybersecurity incidents and threat signals

treasury.gov

Treasury logo

This company page brings together public reporting currently associated with Treasury. It reflects signals published by Shadow Tier and should not be read as a complete incident history.

1

Published signals

currently linked to this company

0

Last 28 days

recent published signals

0

Last 90 days

recent published signals

1

High or critical

confidence classifications

July 1, 2026

Latest report

most recent published signal

Company signals

All published signals involving Treasury

Treasury logo
High

CISA Confirms US Treasury Department as Only Federal Agency Impacted by BeyondTrust Breach

The Cybersecurity and Infrastructure Security Agency (CISA) confirmed on January 7, 2025, that the US Treasury Department was the only federal agency impacted by a significant data breach attributed to Chinese government-backed hackers. The incident, which came to light in December 2024, involved the exploitation of a compromised cloud service provided by BeyondTrust.

Treasury

FAQ

Questions about Treasury cybersecurity reporting

What does the Treasury page include?

It combines a reviewed organization profile with all current published Shadow Tier signals explicitly linked to Treasury.

Does every mention of Treasury appear here?

No. A signal must contain a reliable company connection and meet the publication criteria; incidental or ambiguous mentions are excluded.

Why can the incident count change?

The page follows current published reporting. Counts change as new evidence is added, classifications are reviewed, or older signals leave the reporting window.