The metallic FBI seal mounted on a polished dark granite wall.

Federal Data Breach: ShinyHunters Hits FBI Servers and Demands Report Retraction

Cybercriminal group ShinyHunters claims it breached internal FBI systems, stealing personal records for thousands of active agents, family members, and job applicants. The group published notice of the breach on its dark web leak platform, stating it captured sensitive data covering nearly all active FBI agents alongside individuals who submitted employment applications.

Independent outlet 404 Media broke news of the incident after reviewing a sample of the stolen files. The sample contained full names, home addresses, personal phone numbers, and spouse details linked to active federal personnel. Journalists verified portions of the leaked data against public records. ShinyHunters stated that the hack was not financially motivated, demanding instead that the bureau take down an official report containing allegations against the group.

Reporting indicates the hackers initially breached an Oracle PeopleSoft server used by human resources teams and recruiters to store job applicant information. From that entry point, the attackers pivoted into an Amazon-hosted government cloud environment holding stored agent and applicant files.

ShinyHunters told reporters they extracted terabytes of internal data, but declined to state what they will do with the records if the FBI refuses to remove the report. Stolen federal files pose a serious counterintelligence threat, as foreign intelligence agencies could use private contact information and home addresses to track, target, or blackmail federal agents and their families.

The group also defaced the main FBI careers site, forcing the portal offline under a maintenance banner. The portal used for special agent applications went down at the same time.

This event marks the second known intrusion into FBI infrastructure this year. Earlier, unidentified hackers breached internal surveillance management systems handling real-time wiretaps and foreign intelligence warrants, exposing active targets. In a separate attack, an Iranian-backed group named Handala hacked FBI Director Kash Patel’s personal email account in response to military actions against Iran.

Exposing federal employee records creates severe security risks for field personnel. Federal agencies face continuous cyber attacks from organized criminal networks and state-sponsored hacker groups. Protecting cloud storage servers and HR databases remains vital for securing sensitive national security operations and keeping field agents safe worldwide