ShinyHunters Hack Exposes Sensitive FBI Employee Data
Article Content
- •ShinyHunters claims to have stolen data on 38,000 FBI personnel, including sensitive medical records.
- •The breach was reportedly facilitated through a vulnerability in Oracle PeopleSoft used by the FBIJobs.gov portal.
- •The FBI is investigating the breach and has not confirmed the extent of the data compromised.
On September 23, 2026, the FBI disclosed an investigation into a data breach by the hacking group ShinyHunters, which claims to have stolen sensitive personal information of approximately 38,000 FBI employees and job applicants. The stolen data reportedly includes names, addresses, phone numbers, Social Security numbers, and sensitive psychiatric and medical evaluation records. ShinyHunters asserts that they exploited a vulnerability in Oracle PeopleSoft, used for the FBI's recruitment portal, to access 2 to 3 terabytes of data. The breach poses significant counterintelligence risks, as the data could be valuable to foreign intelligence services. The FBI is actively investigating the breach and has not confirmed the claims regarding the extent of the data compromised. Security experts warn that the exposure of such sensitive information could lead to harassment, swatting, or extortion of FBI personnel. The FBI's jobs portal has been taken offline as a precautionary measure.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (13)
Following this threat?
Track Clop and Cybersecurity and Infrastructure Security Agency in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
China-Linked QTFY Group Targets Critical Infrastructure with Advanced Exploits The Joint Cybersecurity Advisory JCSA-20260826-01, released on August 26, 2026, details ongoing activities by the China-linked hacking group QTFY, attributed to Nanjing Xinjiuwei Network Technology Co. Active since 2018, QTFY employs platforms like QScan and QTRouter to exploit vulnerabilities in critical…
Kiteworks Issues Urgent Shutdown Advisory Amid Zero-Day Threat Kiteworks has alerted its customers to shut down their servers due to credible threat intelligence indicating an imminent cyberattack exploiting a zero-day vulnerability. The advisory, which applies globally, recommends a six-hour shutdown window starting September 26, 2026. This precautionary measure comes as…