https://www.bleepingcomputer.com/news/security/hackers-lurked-in-treasury-occs-systems-since-june-2023-breach/
Unknown attackers who breached the Treasury’s Office of the Comptroller of the Currency (OCC) in June 2023 gained access to over 150,000 emails, according to anonymous sources familiar with the matter. The OCC is an independent bureau of the U.S. Department of the Treasury that oversees banks and federal savings associations and ensures they comply with applicable laws and regulations, treat customers fairly, and provide fair access to financial services. As Bloomberg first reported, the threat actors gained the ability to monitor employees’ emails after breaking into an email system administrator’s account, as OCC disclosed in February 2025. … “The OCC’s investigation analyzed all email logs since 2022 for due diligence. The OCC identified a limited number of affected email accounts that have since been disabled.” While the OCC initially said the breach only affected a limited number of accounts, people familiar with the investigation told Bloomberg that the attackers had access to more email accounts than previously thought and to around 100 bank regulators’ emails. On Tuesday, April 8, the banking regulator notified the U.S. Congress of a “major information security incident” discovered on February 11. The regulator said the system administrative account compromised in the breach was disabled one day later, on February 12. …
Regards