CRBC News
Security

ShinyHunters Claims Breach Of FBI Systems — Data On Thousands Of Agents And Applicants Allegedly Stolen

ShinyHunters Claims Breach Of FBI Systems — Data On Thousands Of Agents And Applicants Allegedly Stolen
The Department of Justice (DOJ) seal on the J. Edgar Hoover Federal Bureau of Investigation (FBI) building in Washington, DC, US, on Tuesday, April 7, 2026. Acting Attorney General Todd Blanche, newly minted as the nation's top law enforcement officer, said he doesn't feel pressure to carry out retribution against Donald Trump's political enemies even as he pledged fidelity to the president's agenda. Photographer: Graeme Sloan/Bloomberg | Image Credits:Graeme Sloan / Bloomberg

ShinyHunters claims it breached FBI systems and stole data on thousands of agents and job applicants, posting the claim on a dark-web leak site. Independent outlet 404 Media obtained and partially verified samples containing names, addresses and phone numbers, and TechCrunch reviewed the leak post. The group says the attack was not financially motivated and is demanding the removal of a report it disputes. Security experts warn the exposed information could pose a serious counterintelligence and extortion risk to agents and their families.

ShinyHunters, a prolific cybercriminal group tied to large-scale data theft and extortion, claims it has infiltrated FBI systems and exfiltrated information on thousands of current agents and job applicants. The group posted its assertion on a dark-web leak site; TechCrunch reviewed the post and 404 Media obtained and verified a sample of the purported data.

What Happened

According to reporting by 404 Media and TechCrunch, the attackers say they first compromised an Oracle PeopleSoft server — a platform commonly used by HR and recruiting teams — and then pivoted into an Amazon-hosted government cloud that allegedly held personnel records for FBI agents and applicants. 404 Media received samples that included names, home addresses and phone numbers for agents and some family members and verified a portion of that data against public records.

Claims, Motive And Demands

ShinyHunters told reporters the intrusion was "not financially motivated" and said it had taken terabytes of data. The group reportedly demanded that the FBI remove a public report that the hackers say contains false allegations about them; they did not specify what they would do with the files if the FBI refused.

Impact And Risks

Security experts warned that disclosure of names, addresses and phone numbers could create a serious counterintelligence and safety risk. Such information can be used by criminals or foreign intelligence services to identify, coerce, or extort agents and their families. The claim also raises broader concerns about the security of third-party systems and cloud environments that store sensitive government personnel data.

Service Disruption And Response

Reporters said the attackers also defaced the FBI's jobs website; the FBI's recruitment portals were reported offline at the time of publication. The bureau did not respond to requests for comment, and ShinyHunters did not provide additional comment to reporters.

Context

If verified, this would be the second publicly disclosed breach of an FBI system this year. Earlier reports described an intrusion into a system used to manage real-time wiretaps and foreign intelligence warrants. In a separate incident, an Iran-linked group called Handala claimed responsibility for hacking and leaking email content from FBI Director Kash Patel's personal account.

Note: At this stage, the breach remains an allegation reported by independent outlets and reviewed by TechCrunch; official confirmation from the FBI was not available at the time of reporting.

Help us improve.

Related Articles

Trending