A hacking group claims it stole personal data on nearly every FBI employee and applicant after breaching the bureau's jobs website — the same federal government that insists it needs backdoor access to your encrypted communications just proved it can't secure its own systems.
The FBIjobs.gov portal went dark Tuesday after ShinyHunters claimed it exploited a zero-day vulnerability in Oracle's PeopleSoft platform, used that foothold to reach AWS GovCloud servers, and downloaded between two and three terabytes of data. A defacement message on apply.fbijobs.gov — styled like a law enforcement seizure notice — read: "All FBI data was compromised including PII/PHI on incumbent and former FBI employees and all applicant information. We have a lot more than we claim here." The site and its Special Agent Applicant Portal remained unavailable Wednesday.
404 Media reviewed a sample of the alleged stolen data covering 5,000 purported agents, including names, home addresses, phone numbers, dates of birth, and spouse details. Reporters cross-checked phone numbers using the OSINT Industries tool and found they matched the names in the file. A separate check using Darkside, a compromised-data tool built by cybersecurity company District 4, turned up phone numbers associated with Department of Justice personnel. The claims could not be fully verified, but the corroborated sample data gives them weight.
This isn't ShinyHunters' usual racket. The group typically hacks a victim and extorts payment — Instructure, the company behind the Canvas learning platform, paid ShinyHunters' ransom in May to end an attack, as Breitbart reported. This time, the group told 404 Media: "This is not financially motivated." The breach appears to be a vendetta. ShinyHunters demanded the FBI remove or correct a May public service announcement that labeled the group as "threat actors" who "use their real or exaggerated claims of access" to extort victims and who "may falsely claim to have sensitive or compromising information." ShinyHunters called these "false allegations" and gave the bureau one week to comply.
The FBI confirmed it is investigating. "The FBI is aware of claims regarding unauthorized activity affecting FBIjobs.gov and is currently investigating," the bureau said in a statement. No further comment.
This is the second major FBI security incident this year. In March, the bureau disclosed it was investigating "suspicious activities" on an internal system containing sensitive surveillance and investigation data. That same month, a pro-Iranian hacking group claimed to have breached FBI Director Kash Patel's account, posting old photographs and personal documents.
The pattern is clear: the FBI wants master keys to your data but can't keep its own doors shut. Every time the surveillance state asks for another expansion of authority — more warrantless collection, more backdoor mandates, more access to private communications — remember that this is the institution guarding the keys. The people who apply to carry a badge and a gun had their home addresses and spouses' information sitting in a system that got rolled by a group angry about a press release. Ordinary Americans whose data the government compulsively collects deserve to know: if the FBI can't protect its own, what exactly is it protecting?








