Between 22 and 25 September, cybercriminal group ShinyHunters claimed it exploited a zero-day vulnerability in Oracle PeopleSoft software to breach FBI recruitment systems (FBIJobs.gov), stealing 2–3 terabytes of sensitive employee data and information on job applicants and relatives. The FBI confirmed investigation on 23 September.
19 reports · 18 independentother · tech
Claim audit
No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.
Cybercrime group ShinyHunters claimed it breached FBI recruitment systems and stole sensitive information on current and former employees, job applicants and relatives. The group said it compromised FBIjobs.gov and other services and extracted 2TB to 3TB of data after exploiting an unverified Oracle PeopleSoft vulnerability and moving into FBI-managed AWS GovCloud infrastructure [bleepingcomputer.
The ShinyHunters extortion gang claims it breached FBI systems using a new Oracle PeopleSoft zero-day vulnerability, gaining access to internal services and stealing sensitive data on employees and job applicants. [...]
The cybercriminal group ShinyHunters claims it breached FBI systems and stole sensitive information about current and former employees, job applicants and spouses. The group published a sample it said contained records for about 5,000 people, including names, home addresses, phone numbers and, in some cases, spouse information. Reuters partially matched at least nine records against official recor
ShinyHunters claims to have breached FBI systems via a zero-day remote-code-execution flaw in Oracle PeopleSoft on the FBI jobs applicant portal, then moved laterally into the agency's AWS GovCloud environment, exfiltrating an alleged 2-3 TB of data on current, former, and prospective FBI employees. 404 Media reviewed a 5,000-record sample containing names, addresses, phone numbers, dates of birth
ShinyHunters claims it breached FBI systems via an alleged unpatched PeopleSoft RCE, then moved laterally into AWS GovCloud. The group alleges 2-3 TB exfiltrated; the flaw and breach remain unverified, but exposure of federal ERP would be significant. # ThreatIntel # PeopleSoft # FbiBreach https:// cyberworldops.eu/en/shinyhunte rs-alleges-fbi-breach-through-an-unknown-peoplesoft-rce-flaw
🤖 ShinyHunters claims it breached FBI systems via an Oracle PeopleSoft zero-day, reaching internal services and stealing data on employees and job applicants. The gang says a new 0-day was used; claims not yet verified. 🔗 https://www. bleepingcomputer.com/news/secu rity/shinyhunters-claims-fbi-hack-data-theft-in-peoplesoft-zero-day-breach/ # CyberSec # 0day # DataBreach # ThreatIntel
Kash Patel’s FBI gets hacked with personnel and applicants information cybernews.com/news/shinyhu... Seven days: ShinyHunters FBI breach claims involve alleged agent and applicant data as the agency investigates. Read what the evidence shows.
🚨 ShinyHunters claims it breached the FBI using an alleged Oracle PeopleSoft zero-day. The group says sensitive data belonging to FBI personnel and job applicants was compromised, while FBIjobs.gov was defaced. The FBI has acknowledged unauthorized activity and says it is investigating. Technical details, the PeopleSoft attack path, ShinyHunters’ motives, and the wider Clop turf war 👇 https:// t
The threat actors told BleepingComputer the vulnerability allows remote code execution and that they used it Monday night to access FBI systems before moving laterally into FBI-managed AWS GovCloud infrastructure. https://www. bleepingcomputer.com/news/secu rity/shinyhunters-claims-fbi-hack-data-theft-in-peoplesoft-zero-day-breach/
ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants # ShinyHunters https:// thehackernews.com/2026/09/shin yhunters-claims-fbi-breach-says-it.html
The FBI said it is investigating unauthorized activity affecting FBIJobs.gov after cybercrime group ShinyHunters claimed it breached the recruitment portal and stole records of current and former bureau employees and job applicants. The group defaced the site and threatened to publish the data unless the FBI withdrew or revised a May 2026 advisory about its operations. The bureau has not confirmed
ShinyHunters claims FBI breach was revenge for “false” report. Malwarebytes Labs: www.malwarebytes.com/blog/news/20... The extortion group says it stole sensitive data on FBI agents and job applicants, and wants the bureau to retract a warning about its tactics.
⚪️ ShinyHunters Claims to Have Hacked the FBI and Stolen Data on All Employees 🗨️ Members of the ShinyHunters hacking group claim to have breached FBI systems via a zero-day vulnerability in Oracle PeopleSoft and stolen approximately 2–3 TB of data. The allegedly stolen information included personal and medical data on all current and former… 🔗 https:// hackmag.com/news/shinyhunters- fbi?utm_sou
⚠️ CRITICAL: ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants ShinyHunters claims successful breach of FBI systems via zero-day in Oracle PeopleSoft, exfiltrating data on FBI agents and job applicants. FBI has confirmed the incident is under investigation. This represents a high-confidence threat to federal personnel security and operational security. https:// threat
Discover how the ShinyHunters hacking group claims to have orchestrated a massive FBI data breach, stealing employee records via an Oracle zero-day flaw. # ShinyHunters # FBIDataBreach # CyberSecurity # ZeroDay # TechNews https:// securityonline.info/fbi-shinyh unters-data-breach/?utm_source=mastodon&utm_medium=jetpack_social
The FBI is investigating claims by hacker group ShinyHunters that it exploited a zero-day bug in software used by FBIJobs and stole 2–3 TB of data, potentially including personal information on current/former employees and applicants. # databreach https:// arstechnica.com/tech-policy/20 26/09/fbi-rushes-to-investigate-if-shinyhunters-hack-of-thousands-of-employees-is-real/