By Interestana AI Editorial — AI-drafted, human-overseen. How we report
FBI Investigates ShinyHunters Hack of Agency Jobs Website

The Federal Bureau of Investigation (FBI) has initiated an investigation into claims made by the hacker group ShinyHunters, which alleges the exfiltration of personal data belonging to thousands of current and former employees. The breach reportedly occurred after ShinyHunters exploited a previously undisclosed vulnerability within the agency's jobs portal, FBIJobs.gov. On Tuesday, the hacker group took control of the website, replacing its homepage with a banner stating, "THIS SITE HAS BEEN SEIZED BY SHINYHUNTERS," as reported by 404 Media. ShinyHunters informed The New York Times that approximately two to three terabytes of data were compromised. While no data has been publicly leaked to date, the compromised information is said to include names of active and former agents, job applicants, their home addresses, phone numbers, details about their spouses, and specific medical information. Bloomberg reported that the stolen data could potentially be weaponized for retaliatory actions against FBI personnel. One sample of the data, according to Bloomberg, appeared to contain "potentially sensitive professional information on the FBI employees’ work focus such as counter-intelligence work on China, Russia and Iran, as well as work against street gangs." The FBI's investigation is focused on verifying the authenticity of the hack and the extent of the data breach. The FBIJobs.gov website is a critical platform for recruitment and employment within the agency, handling sensitive personal and professional information of individuals seeking or holding positions within the FBI. The potential implications of such a breach are significant, raising concerns about the security of sensitive government employee data and the potential for misuse by malicious actors. This incident highlights ongoing cybersecurity challenges faced by government agencies in protecting their digital infrastructure and the personal information of their employees from sophisticated cyber threats. The FBI has not yet released further details regarding the specific vulnerability exploited or the timeline of the breach, but the investigation is ongoing. The group ShinyHunters has a history of targeting organizations and leaking or selling stolen data, making the FBI's swift response and thorough investigation crucial to mitigating potential harm.
Original source — read the full reporting at the publisher:
Read on Ars TechnicaGet the weekly AI digest
AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.