The Homeland Security Information Network is used by government, international and private sector partners to share sensitive but unclassified information.

Win McNamee/Getty Images
By
David DiMolfetta,
Cybersecurity Reporter, Nextgov/FCW
| June 30, 2026
A key Department of Homeland Security information-sharing database was accessed by an unknown threat actor in recent weeks, potentially exposing sensitive data exchanged between federal, state, local and industry partners, according to two people familiar with the matter.
DHS investigators are probing the intrusion of the Homeland Security Information Network, said both people, who spoke on the condition of anonymity because the incident is sensitive. The hackers’ affiliation and whether any documentation was pilfered from the system are both unclear.
The department’s Office of Intelligence and Analysis has conducted a damage assessment of the intrusion, which is believed to have occurred sometime between late May and early June, said one of the people. The hackers targeted HSIN servers and a SharePoint system used for collaboration efforts, the person added.
Approved users lean on the network to securely access data, exchange requests with partner agencies, manage operations, coordinate safety and security for planned events, respond to incidents and share mission-critical information needed to protect their communities, according to its website. HSIN carries unclassified but sensitive information shared among federal, state, local, territorial, tribal, international and private-sector partners.
The intrusion comes as the U.S. is overseeing security for World Cup games across the country, placing added scrutiny on the systems federal, state and local officials use to coordinate major events. A breach of the platform could raise concerns about whether hackers gained insight into security planning, interagency coordination or response procedures surrounding one of the most visible international events hosted predominately in the United States.
The platform supports real-time communication, document sharing, alerts, web conferencing and incident management. It’s also used to exchange information about persons of interest and potential threats to help agencies maintain situational awareness during emergencies and events.
“The Department of Homeland Security is aware of a recent cyber incident involving a specific, unclassified legacy information sharing environment. We immediately took action to isolate the affected systems, mitigate the vulnerability, and launch a comprehensive forensic investigation,” a department spokesperson said after this story published. “There is no indication that classified networks were impacted, and the system remains operational for our partners. As this is an ongoing investigation, we cannot provide further operational details at this time."
The development would not be the first time HSIN has faced security problems. In 2023, an access misconfiguration linked to a contractor’s coding error caused restricted HSIN data to be exposed to unapproved users inside the platform, according to a memo obtained by Nextgov/FCW.
The error let information intended for a limited set of authorized users be made available more broadly across HSIN, including sensitive U.S. person data and other personally identifying information. The full consequences of that misconfiguration are still unclear, according to a third person. Wired previously reported that incident.
Nation-state groups and criminal hackers routinely target U.S. systems to collect intelligence, steal sensitive information, disrupt operations or gain footholds inside government networks. In February, a suspected China-linked breach of an FBI surveillance system likely revealed phone numbers of targets being monitored by the bureau, Nextgov/FCW previously reported.
Editor's note: This article has been updated to include comment from DHS.
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | House committee wants details on DHS network hack | 0 | 5 | 07-07-2026 |
| 2 | Politico: неизвестные хакеры получили доступ к данным сотрудников Госдепартамента | 0 | 0 | 17-09-2018 |
| 3 | US and allies warn of Russian critical infrastructure attacks | 0 | 7 | 13-07-2026 |
| 4 | The hidden market turning home internet connections into cover for hackers | 0 | 8 | 25-06-2026 |
| 5 | AFP: компания Airbus стала жертвой кибератак | 0 | 0 | 26-09-2019 |
| 6 | Lidl discloses online shop breach after service provider hack | -2 | 6 | 13-07-2026 |
| 7 | Хакеры взломали два аккаунта Facebook в Twitter | 0 | 0 | 08-02-2020 |
| 8 | AFP: хакеры взломали сайт МИД Франции | 0 | 0 | 13-12-2018 |
| 9 | СМИ: Huawei обвинила правительство США в проникновении на ее сервера | 0 | 0 | 07-03-2019 |
| 10 | Breach of IBM-managed environment exposes personal data of 70,000 in Singapore | 0 | 12.37 | 03-07-2026 |