Key facts
- The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) confirmed a data breach.
- A ransomware group known as Qilin claimed responsibility for the attack.
The Bureau of Alcohol, Tobacco, Firearms and Explosives confirmed a data breach after a ransomware group claimed responsibility for accessing a system containing sensitive law enforcement data. The agency stated the affected system was isolated and quickly shut down, with an investigation ongoing.
The breach raises significant concerns due to the sensitive nature of law enforcement data that ATF systems can hold, potentially impacting national security and civil liberties.
The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has confirmed a data breach following claims made by a ransomware group. The group, identified as Qilin, stated on Wednesday that it had gained access to a computer system containing sensitive information related to ongoing investigations by the ATF.
Tanya Roman, an ATF spokesperson, confirmed the breach via email, stating that the affected system was standalone and not connected to other critical ATF systems, such as those used for case management or public form submissions. The system was reportedly shut down quickly after the breach was discovered, and an investigation is underway.
The ATF has designated the incident a 'major incident,' a classification that indicates potential harm to national security or civil liberties and triggers reporting requirements to Congress. The agency is coordinating with the Department of Justice on the matter. Qilin, a ransomware operation believed to be Russian-based or Russian-speaking, has claimed nearly 2,400 attacks across over 100 countries since its emergence in October 2022.