← Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF)

2026 ATF — Qilin listing + agency confirms major incident on isolated system

2026 Unknown records affected Share on X

Data compromised

ATF has not published field inventory; Cybernews cites information tied to criminal-investigation targets on the isolated system — volume unknown

Technical writeup

Verified federal agency notice — August 26–27, 2026. Qilin added the US Bureau of Alcohol, Tobacco, Firearms and Explosives to its leak site without publishing proof samples. ATF issued a press release the same day confirming unauthorized access to a standalone system, terminating connections, and designating a DoJ-coordinated major incident. ATF said the system operates separately from its enterprise network, eForms, case-management, and laboratory systems, and that mission operations were unaffected. Cybernews reported ATF officials said the compromised system contained information about investigation targets. ATF did not confirm data volume or attribute the intrusion to Qilin in public materials reviewed at indexing. recordsAffected 0 pending investigation census; companyConfirmed true for system compromise.

Root cause

Qilin ransomware gang listed ATF Aug 26; ATF confirmed compromise of standalone system (not enterprise/eForms/case management) — DoJ major incident

References