The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has confirmed that one of its standalone systems was compromised. This confirmation follows claims made by the Qilin ransomware group, which added the ATF to its dark web data leak portal.
The ATF described the event as a "major incident" and is investigating it in collaboration with the Department of Justice. Upon discovery, the agency immediately terminated connections to the affected environment and initiated incident-response and forensic activities. The impacted system operates separately from the main ATF enterprise network, and there is no indication that the incident affected the ATF eForms system or any other core ATF system.
The ATF stated that the incident did not affect the agency's operations. The agency has asked the public to share any information regarding the attack through its official tipline.
Qilin is a Ransomware-as-a-Service (RaaS) operation, first identified in August 2022 under the name "Agenda." The group has claimed responsibility for over 2,200 victims on its dark web leak site, including organizations such as Nissan, Yangfeng, Synnovis, Asahi, Lee Enterprises, and Australia's Court Services Victoria.
This incident follows other cybersecurity breaches disclosed by U.S. federal agencies this year. The FBI confirmed in March it was investigating a breach affecting systems for wiretap and surveillance warrants. In July, the Department of Homeland Security disclosed a cyberattack that compromised the Homeland Security Information Network (HSIN).
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) confirmed a "major incident" involving a breach of one of its standalone systems, following claims by the Qilin ransomware group. The agency stated that its main enterprise network, eForms system, and other ATF systems were not affected, and operations remain uninterrupted.