U.S. cybersecurity officials and intelligence agencies have publicly disclosed a major state-sponsored cyber espionage campaign attributed to Chinese threat actors that successfully breached sensitive internal networks across key federal agencies, including the Department of Justice, NASA, the Federal Reserve, and the U.S. Senate.

Widespread Access via Zero-Day Exploits
According to a joint security advisory issued by CISA and the FBI, the threat actors gained initial access by exploiting undisclosed zero-day vulnerabilities in enterprise virtual private network (VPN) gateways and cloud identity management software. Once inside, the hackers maintained persistent access for months before detection.
Investigators confirmed that intruder activity targeted unclassified email systems, internal policy drafts, agency personnel directories, and research databases.
Reactions from Lawmakers and Cybersecurity Experts
National security leaders in Congress described the breach as one of the most broad-ranging espionage operations in recent years, calling for emergency security audits across all federal civilian networks.
The White House National Cyber Director stated that federal incident response teams have deployed advanced threat hunting protocols to evict intruders, revoke compromised access credentials, and patch vulnerable gateway devices.
Key Aspects of the Federal Cyber Breach:
- Multiple Agencies Impacted: Networks compromised at DOJ, NASA, Federal Reserve, and Senate offices.
- Zero-Day Exploitation: Advanced entry techniques bypassing multi-factor authentication systems.
- Emergency Directive Issued: Federal civilian agencies mandated to implement immediate firmware patches.
Diplomatic Fall-Out and Defense Posture
State Department officials confirmed that formal diplomatic protests have been lodged with Chinese representatives in Washington. Cybersecurity agencies have urged commercial critical infrastructure operators to audit their own gateway logs for matching indicators of compromise.