ShinyHunters Claims It Stole Personal Data on Nearly All FBI Agents

The cybercrime group ShinyHunters claims it obtained sensitive personal information belonging to nearly every current and former FBI agent, along with people who applied for jobs at the bureau, in an attack that also disrupted the agency’s recruitment systems.

ShinyHunters announced the alleged breach on its dark-web leak site and told Reuters that it targeted the FBI in retaliation for a May warning in which the bureau detailed the group’s tactics and advised victims against paying hackers, according to reports. The group claimed it had stolen information “on almost ALL FBI Agents, and individuals who filed an application with the FBI for a job.”

The FBI has not confirmed that ShinyHunters obtained employee records or gained access to the bureau’s internal systems. The agency said it was “aware of claims regarding unauthorised activity affecting FBIjobs.gov and is currently investigating.”

The FBI’s public recruiting system experienced problems Tuesday as the claims circulated. ShinyHunters provided what it said was an image showing a defaced FBI recruitment page, along with a sample of records it claimed came from the breach. Reuters was unable to independently authenticate the screenshot but confirmed that the jobs system had experienced disruption.

A notice on the recruitment site said FBIjobs.gov and the bureau’s Special Agent Applicant Portal were “currently unavailable.”

The material released by ShinyHunters appeared to contain particularly sensitive information. The sample included names, home addresses, Social Security numbers and FBI work assignments, according to Reuters. Some records also appeared to identify family members.

Reuters checked portions of the information against credit-bureau records and previously leaked data maintained by dark-web intelligence company District 4 Labs. At least 10 records appeared to contain matching information, including one associated with FBI Director Kash Patel. A person familiar with the records also said some of the listed FBI job descriptions were accurate.

Those checks, however, do not establish that the information came from FBI computer systems. Previously stolen or commercially available information can be combined into datasets that appear to come from a newly compromised organization. Reuters said it could not determine where the ShinyHunters records originated or verify the group’s claim that they were taken directly from the FBI.

If authentic, the type of information described by the hackers could create risks extending well beyond identity theft.

Cynthia Kaiser, a former FBI official who now serves as senior vice president at cybersecurity company Halcyon, said leaks involving law-enforcement personnel can be “incredibly harmful” because criminals can use personal information to identify, harass or pressure investigators.

Kaiser said information exposed in an FBI-related leak dating to 2016 continues to be used against agents years later.

“Once that information is stolen, it is used forever,” she said.

ShinyHunters has become one of the more prominent groups involved in large-scale data theft and digital extortion. The organization has recently been linked to the purported theft of millions of business records from Rockstar Games, the company behind the Grand Theft Auto franchise, as well as a May attack involving the Canvas education platform that caused disruptions at schools and universities. AI company Anthropic also said earlier this month that it detected ShinyHunters-linked hackers attempting to use its technology.

For now, the scale and source of the purported FBI breach remain unconfirmed. The bureau is investigating the activity involving its recruitment site, while ShinyHunters has yet to provide independently verified evidence showing that it penetrated internal FBI networks or obtained the full collection of records it claims to possess.

[READ MORE: Democrat In Michigan Counting Her Own Votes]

Leave a Reply

Your email address will not be published.

Previous Story

Michigan Clerk Says Questionable Voter Registrations Are Burdening Election Offices Ahead of November