
A hacking group calling itself ShinyHunters says it has obtained confidential medical and fitness examination records for a large number of FBI special agents. The stolen data includes blood and urine test results, physicians’ notes documenting health conditions, full names, addresses, phone numbers, badge numbers, and job titles. The breach allegedly occurred Monday and was publicly announced on Wednesday, with samples of the data provided to news organizations.
The hackers claim to have accessed sensitive information affecting between 38,000 and 60,000 current and former FBI employees. The group says it exploited a vulnerability in an Oracle cloud storage system to gain entry to multiple FBI platforms, including systems handling job postings, employee background checks, medical records, and investigative information. The FBI acknowledged the incident on Wednesday and stated it is investigating whether the breach directly compromised its systems or involved a third-party provider.
Security experts have warned that such a breach poses substantial risks to affected agents. Medical records cannot be changed once compromised, making the long-term consequences particularly serious. The exposed data could be used for phishing schemes, identity fraud, blackmail, impersonation of law enforcement officers, and targeted attacks. Some records reportedly relate to agents involved in investigations concerning Russia, China, and drug trafficking organizations.
The ShinyHunters collective, which has been active since 2019 and previously targeted gaming companies and educational platforms, is unusual in that it is not demanding money. Instead, it is seeking retraction of an FBI advisory published in May and claims it will release the full dataset within five days unless its demands are met. The FBI has stated it is working with third-party providers to assess and mitigate potential risks from the incident.
Article Attribution | Read More at Article Source
Article summary produced by Claude AI