· via TechCrunch
ShinyHunters claims FBI breach with data on agents and job applicants
ShinyHunters says it stole terabytes of FBI agent and applicant data after breaching an Oracle PeopleSoft server, and wants the bureau to remove a report about the group.

The claim
ShinyHunters, a cybercriminal crew with a long history of large-scale data theft and extortion, has announced that it compromised the FBI and made off with personal information on a large portion of the agency's workforce. According to TechCrunch, which reviewed the group's post on its dark web leak site, the hackers claim to hold sensitive records on "almost all FBI agents" as well as everyone who has ever applied for a job at the bureau.
404 Media reported the story first, after receiving a sample of the stolen material — names, home addresses and phone numbers belonging to FBI agents and their spouses — and checking part of it against public records. That partial verification gives the claim more weight than a typical boast, though the FBI has neither confirmed nor denied the breach.
How the intrusion reportedly unfolded
Per 404 Media's reporting, the attackers' way in was an Oracle PeopleSoft server, software widely used by human resources teams and recruiters to hold job applicants' personal details. From that foothold, the group says it pivoted into an Amazon-hosted government cloud environment where the FBI kept its agent and applicant data.
ShinyHunters told 404 Media that they exfiltrated terabytes of information. The group has not spelled out what it intends to do with the data if its demands are not met.
An unusual demand
Unlike the ransomware-style extortion the group is best known for, ShinyHunters describe this operation as not financially motivated. Their stated condition is that the FBI remove a published report that, in the group's view, contains false allegations about its members. It is unclear whether the bureau intends to engage with the demand at all.
Visible fallout
By the time TechCrunch published, the FBI's jobs portal had been defaced and was displaying a maintenance notice, while the special agent applicant portal was also offline. The FBI did not respond to a request for comment on Tuesday, and neither did the hackers.
A rough year for the bureau
The claimed intrusion is the second known breach of an FBI system this year, according to TechCrunch. Unidentified hackers previously broke into a system the agency uses to manage real-time wiretaps and foreign intelligence-gathering warrants, an intrusion that risked revealing the targets of U.S. surveillance. Separately, an Iran-linked group called Handala hacked and leaked the personal email account of FBI director Kash Patel, framing it as retaliation for American-led strikes on Iran.
Why it matters
Even if the group's claims turn out to be exaggerated, a verified sample of agent names paired with home addresses and family phone numbers describes a serious counterintelligence problem. As TechCrunch notes, data of this kind can be used to pressure or blackmail FBI personnel — or their relatives — into cooperating with a foreign government. Intelligence agencies invest enormous effort in shielding the identities of their officers; a single dataset covering most of a service's workforce, plus the far larger population of past job applicants, would undermine that protection at near-institutional scale.
For readers outside the bureau, the incident underlines two points. First, HR and recruitment platforms are genuine attack surface: a PeopleSoft deployment holding applicant records became the doorway into a government cloud holding far more sensitive contents. Second, motivation is shifting — a crew known for monetising stolen data is now using a breach as leverage to scrub an unflattering report, a tactic that sits somewhere between conventional extortion and an information operation. Until the FBI comments publicly, the full scope of the theft remains unconfirmed, but the early verification and the defaced jobs site suggest this is more than an idle claim.
- #fbi
- #data-breach
- #shinyhunters
- #cybersecurity
- #oracle-peoplesoft