Bleepingcomputer DHS Investigates Breach of HSIN Information-Sharing Network
Article Content
- •DHS is investigating a breach of the HSIN information-sharing network.
- •The intrusion occurred between late May and early June 2026, affecting sensitive data.
- •No specific threat actor has been identified, and classified systems remain unaffected.
The Department of Homeland Security (DHS) is investigating a breach of the Homeland Security Information Network (HSIN), which occurred between late May and early June 2026. An unknown threat actor accessed the network, potentially exposing sensitive data shared among federal, state, local, and private-sector partners. The attack targeted HSIN servers and a SharePoint system used for collaboration. DHS has not attributed the attack to any specific group and is assessing the extent of the damage. The breach raises concerns about the security of information related to major events, particularly with the World Cup taking place across the U.S. The system remains operational for partners, and classified networks were not affected. This incident follows a previous security issue in 2023 involving an access misconfiguration that exposed sensitive data. The investigation is ongoing, and DHS has taken steps to isolate affected systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (23)
Following this threat?
Track Department of Homeland Security in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…