
The FBI is actively investigating allegations made by cyber-crime group Shiny Hunters that it has obtained sensitive information affecting approximately 38,000 agency employees. According to the group’s claims, the stolen data includes agent names, roles, badge numbers, home addresses, phone numbers, and family member information. A small portion of the data has been reviewed and appears authentic, with some records containing details about job assignments related to operations against Chinese espionage, Russian intelligence, and drug trafficking organizations.
Shiny Hunters, an international collective of hackers believed to have originated in France, claims to have breached FBI servers and accessed multiple systems including FBIJOBS, FBI BEAST (which conducts background checks), FBI MedLink (containing medical records), and FBI BICS (holding investigation information). The group alleges it exploited a vulnerability in the Oracle cloud storage system used by the FBI. The hackers have presented samples and screenshots to journalists as evidence of the breach.
Rather than demanding payment, Shiny Hunters is requesting that the FBI retract an advisory issued earlier in the year characterizing the group as “threat actors.” The criminals claim they are “offended” by the FBI’s description and have given the agency one week to correct or remove what they characterize as false allegations, threatening to release the full databases if demands are not met.
The FBI stated in a public statement that it is determining whether its own systems were compromised or if a third-party provider was breached. The agency indicated it is working with third-party providers supporting FBIJobs.gov to address potential risks. Cyber-security experts have characterized the incident as a retaliation attack and noted that it demonstrates significant vulnerabilities in major organizations’ security infrastructure. Some analysts have suggested the group’s actions may prompt the FBI to intensify efforts to identify and prosecute the hackers involved.
Article Attribution | Read More at Article Source
Article summary produced by Claude AI