Special agents blood and urine test results stolen in FBI hack

by | Sep 25, 2026 | Technology

Special agents blood and urine test results stolen in FBI hack

A cyber-criminal group identified as ShinyHunters has claimed responsibility for breaching FBI systems and obtaining sensitive medical data belonging to thousands of special agents. The stolen records reportedly contain fitness-for-work medical examination results, including blood and urine test outcomes, doctors’ notes, full names, addresses, phone numbers, badge numbers, and job titles. The hackers have shared samples of the alleged data with news organizations and posted details of the breach on a darknet site.

The group claims to have initially underestimated the scale of the theft and now states it possesses sensitive information on approximately 60,000 current and former FBI personnel, though initial estimates suggested the breach affected around 38,000 current employees. According to the hackers’ claims, they exploited a vulnerability in an Oracle cloud storage system to access multiple FBI platforms, including FBIJobs, FBI BEAST (which handles background checks), FBI MedLink (medical records storage), and FBI BICS (investigative information). The records allegedly include information on agents involved in investigations related to Russia, China, and drug cartels, as well as details about senior officials such as deputy directors.

Security experts have warned that the breach poses significant risks to affected agents. The exposed medical data could be weaponized for phishing attacks, identity fraud, blackmail, and impersonation schemes. Unlike passwords that can be reset, medical records remain permanently compromised once exposed. A former UK National Cyber Security Centre official characterized the incident as among the most serious data breaches possible.

Unusually, ShinyHunters has not demanded ransom money. Instead, the group is seeking a retraction of an FBI advisory published in May, which they claim offended them. The hackers have threatened to publish the full dataset within five days unless their demands are met. The FBI acknowledged the breach on Wednesday and stated it was “aggressively investigating” the incident while working with third-party providers to mitigate risks, though it has not yet determined whether the breach occurred directly in FBI systems or through a compromised external provider.

Article Attribution | Read More at Article Source

Article summary produced by Claude AI