IT-PUB NEWS

ShinyHunters claims FBI breach exposed agent data

24.09.2026 14:03 • Author: IT-PUB
ShinyHunters claims FBI breach exposed agent data

The group says it stole data on FBI agents and job applicants, including personal details that could create privacy and counterintelligence risks.

ShinyHunters, a hacking group known for large-scale theft and extortion, says it breached the FBI and obtained data on thousands of agents and job applicants. The claim stands out not just because of the agency involved, but because the data could expose people working for — or trying to work for — the bureau. If accurate, the leak could carry risks far beyond a typical corporate data breach.

The group posted the allegation on its dark web leak site. According to the source material, it claims the breach involved “sensitive data on almost all FBI agents and individuals who filed an application with the FBI for a job.” The hackers also say the attack was “not financially motivated” and want the FBI to remove a report they claim contains false allegations about them.

Sample records included names, addresses and phone numbers

The first public sign of the alleged breach came through 404 Media, which said it received a sample of the stolen material. That sample included names, home addresses and phone numbers of FBI agents and their spouses. The publication also said it verified part of the data against public records.

That is what makes this more than another leak. Personal contact details tied to law-enforcement personnel and their families can create risks that go well beyond ordinary account theft. In this case, the issue is not just privacy, but possible exposure of people who may already be involved in sensitive work.

ShinyHunters did not say how many people were affected when TechCrunch contacted the group, but it said it was “very confident” it had data on “mostly all FBI” and that a “substantial amount of applicants data” was also involved.

How the hackers say they got in

According to 404 Media, the hackers first breached an Oracle PeopleSoft server. These systems are often used by HR teams and recruiters to store job applicants’ personal details. The report says the attackers then moved into an Amazon-hosted government cloud that stored agents’ and applicants’ data.

The exact scope of the intrusion remains unclear. ShinyHunters told the publication it took terabytes of data, but did not say what it would do with the information if the FBI does not remove the report it objected to.

The FBI has not confirmed the details of the alleged attack. An FBI spokesperson told TechCrunch that the bureau is aware of claims about unauthorized activity affecting FBIjobs.gov and is investigating. As IT-PUB News notes, that statement stops short of confirming the breach itself.

FBI jobs portal was shown as down

The hackers reportedly defaced the FBI’s jobs site, and at the time of publication the portal displayed a maintenance message. The site also said the FBI’s special agent applicant portal was down.

That makes the incident especially notable because the apparent target was not limited to internal systems. It also appears to have touched public-facing infrastructure used by people applying to join the agency. If the claim is accurate, the breach would affect both current personnel and prospective employees, widening the number of people who may have reason to worry about their personal data.

The source material does not say whether the maintenance notice was directly related to the alleged intrusion, only that the site was showing that message when the report was published.

Why the leak raises security concerns

The possible fallout goes beyond embarrassment for the bureau. The source says the stolen data could pose a major counterintelligence threat, because hackers and overseas spies could use it to pressure or extort FBI agents and their families into cooperating with a foreign government.

That is the most serious part of the claim. When a breach exposes names, addresses and phone numbers of law-enforcement personnel, it can create leverage for criminal groups or hostile actors. Even if the data is not immediately published in full, simply having it can still be dangerous.

The hackers’ claim that the attack was not financially motivated adds another layer of uncertainty. Rather than a typical extortion attempt aimed at payment, they appear to be using the breach as pressure in a dispute over a report they say is false. The source does not provide details about that report.

A second known FBI-related breach this year

This is the second known breach of an FBI system this year, according to the source. Earlier, unidentified hackers broke into a system used to manage real-time wiretaps and foreign intelligence-gathering warrants, which could have revealed targets of the agency’s surveillance.

The FBI has also faced a separate incident involving its director. Kash Patel’s personal email account was hacked and leaked by an Iran-backed group called Handala, which the source says acted in retaliation for U.S.-led strikes against Iran.

Together, those incidents show how FBI-related data has become a target not just for cybercriminals, but also for actors with political or intelligence motives. The latest claim from ShinyHunters is still under investigation, and the bureau has not confirmed the full extent of the alleged breach. But if the reported exposure is real, the impact could reach far beyond a single website or database.


Improve SEO for a small/medium business website for $50