databreaches.net 22 Sept 2026, 18:43 UTC

ShinyHunters Claims FBI Breach Exposed Employees’ Private Data

CyberSIXT Evidence Panel Source marked as original reporting
Threat Actor

SHINYHUNTERS claims it breached multiple FBI-related services and obtained data on current and former employees, job applicants and agents’ families. A representative told 404 Media that the stolen information includes names, home addresses, telephone numbers and spouse details, while the group’s own defacement of apply.fbijobs.gov claimed sensitive personal and health information had been compromised.

The group said it exploited a zero-day vulnerability in Oracle PeopleSoft, gained access to AWS GovCloud servers and downloaded between two and three terabytes of data. The FBI-related jobs site displayed an “under maintenance” notice, but the claims have not been independently confirmed in the supplied report.

In a post on its leak site, ShinyHunters said the affected services included Criminal Justice, HR and Medlink, and gave the FBI one week to remove or correct parts of a 2026 second-quarter FLASH report that it said made false allegations about the group’s conduct. ShinyHunters denied carrying out swatting or threatening victims’ relatives, rejected links to “The Com” and insisted its action was not financially motivated.

The report’s author argues that demanding changes to an official document while holding stolen data appears to constitute extortion, despite the group’s First Amendment claims. The FBI’s response and whether any data will be published were not stated.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline