
Hackers claim breach of data on all FBI employees
A high-profile hacking group claims it has breached multiple FBI-related services and stolen data on all FBI employees and applicants, including agents' names, home addresses, phone numbers and information on their spouses.
The group, ShinyHunters, defaced the FBI jobs website Tuesday with a notice declaring the site "seized," a mocking nod to the takedown banners the bureau posts on criminal sites. The applicant portal and the Special Agent Applicant Portal remain offline. The defacement claimed the group took personal and health information on current and former employees and every applicant, and closed by imitating Trump's Truth Social sign-off.
A representative said the group exploited a zero-day flaw in Oracle's PeopleSoft software, then accessed AWS GovCloud servers and downloaded two to three terabytes of data. The group shared a sample appearing to cover about 5,000 employees. Checks of some phone numbers in the sample matched the named individuals, and some were linked to Justice Department personnel.
The breach could carry serious counterintelligence consequences. Hackers in the same criminal ecosystem have previously used stolen phone records to track and harass FBI agents investigating them, and the data would be valuable to foreign intelligence services.
ShinyHunters typically extorts its victims, but the representative said this attack was not financially motivated, describing the group's plans as "coercion" rather than extortion. The FBI did not immediately respond to a request for comment.