US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.
US officials say a recent cybersecurity breach at the Treasury Department originated from hackers in China.

Hack on US Treasury blamed on China causes fear in cybersecurity community


Cody Combs
  • English
  • Arabic

After unclassified documents from the US Treasury Department were accessed in a hack blamed on China, many in the cybersecurity community are wondering how such breaches might intensify in the weeks and months ahead.

“I know a lot of cybersecurity vendors are now worried about getting hit themselves,” said a media-relations professional with various technology clients. “As a result, they’re taking the line of not jumping on top of someone else’s misfortune.”

The Treasury Department sent a letter to US senators on Monday saying that third-party software provider BeyondTrust had disclosed that a “threat actor” gained “access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices end users”.

In a statement provided to The National, BeyondTrust said that it had notified a limited number of customers who were affected, and that it has been working to support the customers since then.

“BeyondTrust previously identified and took measures to address a security incident in early December 2024 that involved the Remote Support product,” read the statement. It added that only the company's Remote Support product had been compromised.

“Law enforcement was notified and BeyondTrust has been supporting the investigative efforts.”

The company also said it had posted an entire timeline of the hack and would continue updating affected customers.

A US Treasury Department letter sent to Congress after the hacking. Photo: Screengrab
A US Treasury Department letter sent to Congress after the hacking. Photo: Screengrab

China has repeatedly denied involvement in the hacking, with a Foreign Ministry representative saying that the accusations were “groundless” and “lacking evidence”.

According to the letter from the Treasury Department, through the “key”, the hacker was able to gain access to certain government workstations – with that access limited to unclassified documents.

“The analogy is a hacker breaks into your plumber's office and steals master keys to the buildings they service,” John Scott-Railton, a senior researcher with Citizen Lab, an interdisciplinary technology research lab based at the University of Toronto, wrote on X.

“Given BeyondTrust's big client list, makes one wonder if other customers were targeted,” he added, referring to clients such as Williams Sonoma, Carbonite, IHG Hotels and Resorts, Wynn Resorts and ServiceNow.

Heightened awareness due to Salt Typhoon cyber attack

The recent compromise of the Treasury Department comes weeks after what has become known as the Salt Typhoon cyber breach, flagged by US cybersecurity officials in early December.

In that particular breach, Washington agencies accused China of sponsoring an attack that infiltrated at least nine US communications companies and potentially left American consumers vulnerable.

As a result of Salt Typhoon and other recent accusations against China-based hackers, the Cybersecurity and Infrastructure Security Agency, issued guidance for “highly targeted individuals” in the US to protect their mobile devices and personal communication computer systems.

The US Cybersecurity and Infrastructure Security Agency's new guidance for highly vulnerable users. Photo: Screengrab
The US Cybersecurity and Infrastructure Security Agency's new guidance for highly vulnerable users. Photo: Screengrab

“Use only end-to-end encrypted communications,” reads one of the guidance suggestions from CISA in the long list compiled by the agency. “Migrate away from short message service-based multi factor authorisation,” reads another on the list, which also has specific instructions for iPhone and Android platform users.

Ongoing technology tension between US and China

In early December during a panel discussion hosted by the Centre for Strategic and International Studies, Kara Frederick, director of the tech policy centre for The Heritage Foundation, a conservative think tank, spoke about an increasingly problematic national security outlook when it comes to China, and that US tech companies needed to scale back efforts in the country.

“US big tech companies are going to have to pick a flag, and it should be the stars and bars and not China. I think the Trump administration will wake these companies up to that,” she said.

In a recent video posted by the select committee on the Chinese Communist Party, Republican Representative John Moolenaar did not mince words about tension between the US and China over technology.

“The select committee has made incredible progress in combating China's maligned influence within the United States,” Mr Moolenaar said, pointing out the recent bill that seeks to ban TikTok in the US due to national security concerns.

That bill is being challenged by ByteDance, the Beijing-based owner of TikTok, in the US Supreme Court, which will hear legal arguments from the company that is hoping to keep the social media platform operating in the US.

“With steadfast support from both [House Speaker Mike Johnson and minority leader Hakeem Jeffries] I look forward to continuing to lead this excellent group of lawmakers for another two years in continuing our bipartisan work to stand up to the Chinese Communist Party to protect American interests at home and abroad,” said Mr Moolenaar.

Meatless Days
Sara Suleri, with an introduction by Kamila Shamsie
​​​​​​​Penguin 

How much do leading UAE’s UK curriculum schools charge for Year 6?
  1. Nord Anglia International School (Dubai) – Dh85,032
  2. Kings School Al Barsha (Dubai) – Dh71,905
  3. Brighton College Abu Dhabi - Dh68,560
  4. Jumeirah English Speaking School (Dubai) – Dh59,728
  5. Gems Wellington International School – Dubai Branch – Dh58,488
  6. The British School Al Khubairat (Abu Dhabi) - Dh54,170
  7. Dubai English Speaking School – Dh51,269

*Annual tuition fees covering the 2024/2025 academic year

Key facilities
  • Olympic-size swimming pool with a split bulkhead for multi-use configurations, including water polo and 50m/25m training lanes
  • Premier League-standard football pitch
  • 400m Olympic running track
  • NBA-spec basketball court with auditorium
  • 600-seat auditorium
  • Spaces for historical and cultural exploration
  • An elevated football field that doubles as a helipad
  • Specialist robotics and science laboratories
  • AR and VR-enabled learning centres
  • Disruption Lab and Research Centre for developing entrepreneurial skills
Avatar: Fire and Ash

Director: James Cameron

Starring: Sam Worthington, Sigourney Weaver, Zoe Saldana

Rating: 4.5/5

Match info:

Real Betis v Sevilla, 10.45pm (UAE)

%20Ramez%20Gab%20Min%20El%20Akher
%3Cp%3E%3Cstrong%3ECreator%3A%3C%2Fstrong%3E%20Ramez%20Galal%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarring%3A%3C%2Fstrong%3E%20Ramez%20Galal%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStreaming%20on%3A%20%3C%2Fstrong%3EMBC%20Shahid%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E2.5%2F5%3C%2Fp%3E%0A
Tax authority targets shisha levy evasion

The Federal Tax Authority will track shisha imports with electronic markers to protect customers and ensure levies have been paid.

Khalid Ali Al Bustani, director of the tax authority, on Sunday said the move is to "prevent tax evasion and support the authority’s tax collection efforts".

The scheme’s first phase, which came into effect on 1st January, 2019, covers all types of imported and domestically produced and distributed cigarettes. As of May 1, importing any type of cigarettes without the digital marks will be prohibited.

He said the latest phase will see imported and locally produced shisha tobacco tracked by the final quarter of this year.

"The FTA also maintains ongoing communication with concerned companies, to help them adapt their systems to meet our requirements and coordinate between all parties involved," he said.

As with cigarettes, shisha was hit with a 100 per cent tax in October 2017, though manufacturers and cafes absorbed some of the costs to prevent prices doubling.

the pledge

I pledge to uphold the duty of tolerance

I pledge to take a first stand against hate and injustice

I pledge to respect and accept people whose abilities, beliefs and culture are different from my own

I pledge to wish for others what I wish for myself

I pledge to live in harmony with my community

I pledge to always be open to dialogue and forgiveness

I pledge to do my part to create peace for all

I pledge to exercise benevolence and choose kindness in all my dealings with my community

I pledge to always stand up for these values: Zayed's values for tolerance and human fraternity

SPEC%20SHEET%3A%20APPLE%20M3%20MACBOOK%20AIR%20(13%22)
%3Cp%3E%3Cstrong%3EProcessor%3A%3C%2Fstrong%3E%20Apple%20M3%2C%208-core%20CPU%2C%20up%20to%2010-core%20CPU%2C%2016-core%20Neural%20Engine%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EDisplay%3A%3C%2Fstrong%3E%2013.6-inch%20Liquid%20Retina%2C%202560%20x%201664%2C%20224ppi%2C%20500%20nits%2C%20True%20Tone%2C%20wide%20colour%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EMemory%3A%3C%2Fstrong%3E%208%2F16%2F24GB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStorage%3A%3C%2Fstrong%3E%20256%2F512GB%20%2F%201%2F2TB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EI%2FO%3A%3C%2Fstrong%3E%20Thunderbolt%203%2FUSB-4%20(2)%2C%203.5mm%20audio%2C%20Touch%20ID%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EConnectivity%3A%3C%2Fstrong%3E%20Wi-Fi%206E%2C%20Bluetooth%205.3%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EBattery%3A%3C%2Fstrong%3E%2052.6Wh%20lithium-polymer%2C%20up%20to%2018%20hours%2C%20MagSafe%20charging%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ECamera%3A%3C%2Fstrong%3E%201080p%20FaceTime%20HD%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EVideo%3A%3C%2Fstrong%3E%20Support%20for%20Apple%20ProRes%2C%20HDR%20with%20Dolby%20Vision%2C%20HDR10%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EAudio%3A%3C%2Fstrong%3E%204-speaker%20system%2C%20wide%20stereo%2C%20support%20for%20Dolby%20Atmos%2C%20Spatial%20Audio%20and%20dynamic%20head%20tracking%20(with%20AirPods)%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EColours%3A%3C%2Fstrong%3E%20Midnight%2C%20silver%2C%20space%20grey%2C%20starlight%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EIn%20the%20box%3A%3C%2Fstrong%3E%20MacBook%20Air%2C%2030W%2F35W%20dual-port%2F70w%20power%20adapter%2C%20USB-C-to-MagSafe%20cable%2C%202%20Apple%20stickers%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EPrice%3A%3C%2Fstrong%3E%20From%20Dh4%2C599%3C%2Fp%3E%0A
The%20Iron%20Claw
%3Cp%3E%3Cstrong%3EDirector%3A%3C%2Fstrong%3E%20Sean%20Durkin%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarring%3A%3C%2Fstrong%3E%20Zac%20Efron%2C%20Jeremy%20Allen%20White%2C%20Harris%20Dickinson%2C%20Maura%20Tierney%2C%20Holt%20McCallany%2C%20Lily%20James%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%3C%2Fstrong%3E%204%2F5%3C%2Fp%3E%0A
Fanney Khan

Producer: T-Series, Anil Kapoor Productions, ROMP, Prerna Arora

Director: Atul Manjrekar

Cast: Anil Kapoor, Aishwarya Rai, Rajkummar Rao, Pihu Sand

Rating: 2/5 

Mercer, the investment consulting arm of US services company Marsh & McLennan, expects its wealth division to at least double its assets under management (AUM) in the Middle East as wealth in the region continues to grow despite economic headwinds, a company official said.

Mercer Wealth, which globally has $160 billion in AUM, plans to boost its AUM in the region to $2-$3bn in the next 2-3 years from the present $1bn, said Yasir AbuShaban, a Dubai-based principal with Mercer Wealth.

Within the next two to three years, we are looking at reaching $2 to $3 billion as a conservative estimate and we do see an opportunity to do so,” said Mr AbuShaban.

Mercer does not directly make investments, but allocates clients’ money they have discretion to, to professional asset managers. They also provide advice to clients.

“We have buying power. We can negotiate on their (client’s) behalf with asset managers to provide them lower fees than they otherwise would have to get on their own,” he added.

Mercer Wealth’s clients include sovereign wealth funds, family offices, and insurance companies among others.

From its office in Dubai, Mercer also looks after Africa, India and Turkey, where they also see opportunity for growth.

Wealth creation in Middle East and Africa (MEA) grew 8.5 per cent to $8.1 trillion last year from $7.5tn in 2015, higher than last year’s global average of 6 per cent and the second-highest growth in a region after Asia-Pacific which grew 9.9 per cent, according to consultancy Boston Consulting Group (BCG). In the region, where wealth grew just 1.9 per cent in 2015 compared with 2014, a pickup in oil prices has helped in wealth generation.

BCG is forecasting MEA wealth will rise to $12tn by 2021, growing at an annual average of 8 per cent.

Drivers of wealth generation in the region will be split evenly between new wealth creation and growth of performance of existing assets, according to BCG.

Another general trend in the region is clients’ looking for a comprehensive approach to investing, according to Mr AbuShaban.

“Institutional investors or some of the families are seeing a slowdown in the available capital they have to invest and in that sense they are looking at optimizing the way they manage their portfolios and making sure they are not investing haphazardly and different parts of their investment are working together,” said Mr AbuShaban.

Some clients also have a higher appetite for risk, given the low interest-rate environment that does not provide enough yield for some institutional investors. These clients are keen to invest in illiquid assets, such as private equity and infrastructure.

“What we have seen is a desire for higher returns in what has been a low-return environment specifically in various fixed income or bonds,” he said.

“In this environment, we have seen a de facto increase in the risk that clients are taking in things like illiquid investments, private equity investments, infrastructure and private debt, those kind of investments were higher illiquidity results in incrementally higher returns.”

The Abu Dhabi Investment Authority, one of the largest sovereign wealth funds, said in its 2016 report that has gradually increased its exposure in direct private equity and private credit transactions, mainly in Asian markets and especially in China and India. The authority’s private equity department focused on structured equities owing to “their defensive characteristics.”

The Byblos iftar in numbers

29 or 30 days – the number of iftar services held during the holy month

50 staff members required to prepare an iftar

200 to 350 the number of people served iftar nightly

160 litres of the traditional Ramadan drink, jalab, is served in total

500 litres of soup is served during the holy month

200 kilograms of meat is used for various dishes

350 kilograms of onion is used in dishes

5 minutes – the average time that staff have to eat
 

Film: Raid
Dir: Rajkumar Gupta
Starring: Ajay Devgn, Ileana D'cruz and Saurabh Shukla

Verdict:  Three stars 

The National in Davos

We are bringing you the inside story from the World Economic Forum's Annual Meeting in Davos, a gathering of hundreds of world leaders, top executives and billionaires.

The biog

Name: Shamsa Hassan Safar

Nationality: Emirati

Education: Degree in emergency medical services at Higher Colleges of Technology

Favourite book: Between two hearts- Arabic novels

Favourite music: Mohammed Abdu and modern Arabic songs

Favourite way to spend time off: Family visits and spending time with friends

Red Joan

Director: Trevor Nunn

Starring: Judi Dench, Sophie Cookson, Tereza Srbova

Rating: 3/5 stars

The struggle is on for active managers

David Einhorn closed out 2018 with his biggest annual loss ever for the 22-year-old Greenlight Capital.

The firm’s main hedge fund fell 9 per cent in December, extending this year’s decline to 34 percent, according to an investor update viewed by Bloomberg.

Greenlight posted some of the industry’s best returns in its early years, but has stumbled since losing more than 20 per cent in 2015.

Other value-investing managers have also struggled, as a decade of historically low interest rates and the rise of passive investing and quant trading pushed growth stocks past their inexpensive brethren. Three Bays Capital and SPO Partners & Co., which sought to make wagers on undervalued stocks, closed in 2018. Mr Einhorn has repeatedly expressed his frustration with the poor performance this year, while remaining steadfast in his commitment to value investing.

Greenlight, which posted gains only in May and October, underperformed both the broader market and its peers in 2018. The S&P 500 Index dropped 4.4 per cent, including dividends, while the HFRX Global Hedge Fund Index, an early indicator of industry performance, fell 7 per cent through December. 28.

At the start of the year, Greenlight managed $6.3 billion in assets, according to a regulatory filing. By May, the firm was down to $5.5bn. 

2025 Fifa Club World Cup groups

Group A: Palmeiras, Porto, Al Ahly, Inter Miami.

Group B: Paris Saint-Germain, Atletico Madrid, Botafogo, Seattle.

Group C: Bayern Munich, Auckland City, Boca Juniors, Benfica.

Group D: Flamengo, ES Tunis, Chelsea, Leon.

Group E: River Plate, Urawa, Monterrey, Inter Milan.

Group F: Fluminense, Borussia Dortmund, Ulsan, Mamelodi Sundowns.

Group G: Manchester City, Wydad, Al Ain, Juventus.

Group H: Real Madrid, Al Hilal, Pachuca, Salzburg.

When is VAR used?

Goals

Penalty decisions

Direct red-card incidents

Mistaken identity

Normal People

Sally Rooney, Faber & Faber
 

2024%20Dubai%20Marathon%20Results
%3Cp%3E%3Cstrong%3EWomen%E2%80%99s%20race%3A%3C%2Fstrong%3E%0D%3Cbr%3E1.%20Tigist%20Ketema%20(ETH)%202hrs%2016min%207sec%0D%3Cbr%3E2.%20Ruti%20Aga%20(ETH)%202%3A18%3A09%0D%3Cbr%3E3.%20Dera%20Dida%20(ETH)%202%3A19%3A29%0D%3Cbr%3EMen's%20race%3A%0D%3Cbr%3E1.%20Addisu%20Gobena%20(ETH)%202%3A05%3A01%0D%3Cbr%3E2.%20Lemi%20Dumicha%20(ETH)%202%3A05%3A20%0D%3Cbr%3E3.%20DejeneMegersa%20(ETH)%202%3A05%3A42%3C%2Fp%3E%0A
57%20Seconds
%3Cp%3E%3Cstrong%3EDirector%3A%3C%2Fstrong%3E%20Rusty%20Cundieff%0D%3Cbr%3E%3Cstrong%3EStars%3A%20%3C%2Fstrong%3EJosh%20Hutcherson%2C%20Morgan%20Freeman%2C%20Greg%20Germann%2C%20Lovie%20Simone%0D%3Cbr%3E%3Cstrong%3ERating%3A%20%3C%2Fstrong%3E2%2F5%0D%3Cbr%3E%0D%3Cbr%3E%3C%2Fp%3E%0A
The specs

Engine: 1.5-litre turbo

Power: 181hp

Torque: 230Nm

Transmission: 6-speed automatic

Starting price: Dh79,000

On sale: Now

MO
%3Cp%3E%3Cstrong%3ECreators%3A%20%3C%2Fstrong%3EMohammed%20Amer%2C%20Ramy%20Youssef%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStars%3A%20%3C%2Fstrong%3EMohammed%20Amer%2C%20Teresa%20Ruiz%2C%20Omar%20Elba%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ERating%3A%3C%2Fstrong%3E%204%2F5%3C%2Fp%3E%0A
The specs: 2018 Alfa Romeo Stelvio

Price, base: Dh198,300
Engine: 2.0L in-line four-cylinder
Transmission: Eight-speed automatic
Power: 280hp @ 5,250rpm
Torque: 400Nm @ 2,250rpm
Fuel economy, combined: 7L / 100km

Result

UAE (S. Tagliabue 90 1') 1-2 Uzbekistan (Shokhruz Norkhonov 48', 86')

COMPANY%20PROFILE
%3Cp%3E%3Cstrong%3ECompany%3A%3C%2Fstrong%3E%20Vault%3Cbr%3E%3Cstrong%3EStarted%3A%20%3C%2Fstrong%3EJune%202023%3Cbr%3E%3Cstrong%3ECo-founders%3A%20%3C%2Fstrong%3EBilal%20Abou-Diab%20and%20Sami%20Abdul%20Hadi%3Cbr%3E%3Cstrong%3EBased%3A%20%3C%2Fstrong%3EAbu%20Dhabi%3Cbr%3E%3Cstrong%3ELicensed%20by%3A%3C%2Fstrong%3E%20Abu%20Dhabi%20Global%20Market%3Cbr%3E%3Cstrong%3EIndustry%3A%20%3C%2Fstrong%3EInvestment%20and%20wealth%20advisory%3Cbr%3E%3Cstrong%3EFunding%3A%20%3C%2Fstrong%3E%241%20million%3Cbr%3E%3Cstrong%3EInvestors%3A%20%3C%2Fstrong%3EOutliers%20VC%20and%20angel%20investors%3Cbr%3E%3Cstrong%3ENumber%20of%20employees%3A%20%3C%2Fstrong%3E14%3Cbr%3E%3C%2Fp%3E%0A
Updated: January 02, 2025, 11:42 PM