IC Technology & Cyber — 2026-09-23
ShinyHunters Claims Breach of FBI Jobs Portal, Says It Stole Data on All FBI Employees
BLUFEven if ShinyHunters' sample data proves authentic, official confirmation that the breach reached genuine FBI systems by November 15 remains unlikely, pointing instead to a vendor or applicant-processing intermediary.
ShinyHunters posted claims on its dark-web leak site Tuesday that it breached the FBI and stole data on "almost ALL FBI Agents, and individuals who filed an application with the FBI for a job," including names, home addresses, phone numbers, and spouse information 123. 404 Media reported the group said it breached an Oracle PeopleSoft server used for job applicant records, then an Amazon-hosted government cloud storing agent and applicant data, taking what it described as terabytes of material 2. The FBI's jobs site and Special Agent Applicant Portal both displayed "unavailable" or maintenance messages Tuesday 23. Reuters partially verified sample data in at least nine cases by cross-checking names, addresses, and Social Security numbers against credit-bureau records, though it could not confirm the data originated from FBI systems 34. ShinyHunters told Reuters the hack was "not financially motivated" and demanded the FBI retract a May report on the group's methods; the FBI did not respond to requests for comment 23.
AnalysisIf substantiated, the breach would expose FBI personnel to sustained counterintelligence and physical-security risk, since leaked home addresses, phone numbers, and spouse data enable targeting agents outside official channels. Confirmation that the intrusion reached genuine FBI or DOJ-affiliated systems by November 15 is
unlikely, given the Bureau's silence and Reuters' inability to trace sample data to FBI infrastructure despite partial verification against credit-bureau records. High confidence attaches to this assessment because federal agencies withhold confirmation of breaches this sensitive absent forensic certainty, and no technical indicator yet ties the leak to FBI-controlled systems rather than a vendor platform. 404 Media's hacker-supplied samples anchor the reporting, with TechCrunch and CNBC largely restating those claims. The cited Oracle PeopleSoft vector suggests the intrusion may have hit a third-party applicant-data intermediary rather than core Bureau networks, overstating the "FBI breach" framing. Confirmation would force DOJ and FBI leadership to fund emergency protective measures for thousands of agents. Absent it, response stays confined to vendor-side forensic containment.
4 sources
- We Hacked the FBI: Hackers Say They Have Data on All FBI Employees - 404 Media
- Hacking group ShinyHunters claims it breached the FBI, stole agents' and applicants' data - TechCrunch
- ShinyHunters hackers say they breached FBI, stole data on bureau employees - CNBC
- ShinyHunters hackers say they breached FBI - Reuters
View in full brief →