Chinese hackers blamed for multiple breaches at US banking agency

The FDIC failed to promptly report breaches, a congressional report says

Chinese government hackers were the likely attackers in three breaches in recent years at the Federal Deposit Insurance Corporation, the U.S. agency that insures bank accounts, according to a congressional audit.

Breaches at the FDIC in 2010, 2011, and 2013 were caused by an "advanced persistent threat ... believed to have been the Chinese government," according to an interim report on the agency's cybersecurity from the House of Representatives Science, Space, and Technology Committee.

In the 2013 breach, hackers gained access to the computers of 12 staff computers, including the former chairman, chief of staff and general counsel of the agency, the House report said.

FDIC staffers were instructed not to report the 2013 breach because news of it could hurt agency Chairman Martin Gruenberg's confirmation, one witness told House investigators.

The agency also delayed reporting two late 2015 breaches to Congress until 2016, even though the personal data of more than 115,000 people was potentially compromised, the report said. The agency has "purposefully evaded" congressional oversight and has a "long-standing history of a lack of transparency" related to cybersecurity issues, the report said.

"The FDIC’s intent to evade congressional oversight is a serious offense," Committee Chairman Lamar Smith, a Texas Republican, said in an emailed statement. "Major improvements need to be made to the FDIC’s cybersecurity mechanisms."

Representatives of the FDIC and the Chinese Embassy in Washington, D.C., didn't immediately return messages seeking comment on the committee investigation.

The House report rips FDIC security practices and the culture inside the agency. The agency's CIO office is a "toxic work environment," where employees who disagree with leadership are punished, the report said.

In addition, the agency has failed to stop employee use of USB thumbdrives and other portable storage devices, despite two 2015 breaches related to those devices, the report said. "The FDIC has still not implemented sufficient precautionary measures to ensure that additional breaches do not occur," the report said.

Gruenberg is scheduled to testify before the committee about cybersecurity issues on Thursday morning.

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.
Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Grant Gross

IDG News Service
Show Comments

Father’s Day Gift Guide

Brand Post

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Luke Hill

MSI GT75 TITAN

I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Laura Johnston

MSI GS65 Stealth Thin

If you can afford the price tag, it is well worth the money. It out performs any other laptop I have tried for gaming, and the transportable design and incredible display also make it ideal for work.

Andrew Teoh

Brother MFC-L9570CDW Multifunction Printer

Touch screen visibility and operation was great and easy to navigate. Each menu and sub-menu was in an understandable order and category

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Featured Content

Product Launch Showcase

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?