The FBI is investigating a possible breach of the recruiting portal after the ShinyHunters extortion group claimed the theft of personal data of agents, former employees and applicants.. The exact existence and origin of the leak has not yet been confirmed, but part of the sample published by the hackers contains information consistent with real data.

A sample of about 5,000 agents
ShinyHunters claims to have recovered information on “almost all” FBI agents, as well as people who applied to the agency. To support this claim, the group presented a screenshot presented as that of a vandalized workplace and a sample purporting to be approximately around 5,000 agents.
According to the Reuters review, this set would include names, home addresses, social security numbers, professional assignments and, in some cases, the identities of family members. The outlet compared several entries to credit bureau records and information from previous leaks, with the help of dark web intelligence firm District 4 Labs. At least ten matches were noted, notably that of FBI Director Kash Patel. A source close to the matter also found certain job descriptions plausible.
However, this partial verification does not prove that the data came from the FBI’s internal systems. They could come from a procurement-related basis, from a service provider, or from previous aggregated leaks. Reuters was unable to authenticate the screenshot provided by the hackers or determine the scope of the claimed data set.
The FBIJobs portal is at the center of the investigation
The FBI confirms that it is aware of unauthorized activities involving FBIJobs.gov and indicates that it has opened an investigation. On Tuesday, the job site and the portal reserved for special agent requests showed an unavailability message. The agency is not yet saying whether this outage was a direct result of the alleged intrusion or whether its operational network was affected.
This distinction is important. A human resources portal can concentrate particularly sensitive information without providing access to the tools used for federal investigations. However, a leak of identity data would be dangerous: it would facilitate theft, targeted harassment, blackmail or very credible phishing attempts against agents and their loved ones.
The FBI had already opened an investigation into the sale of 153 million driver’s licenses linked to Nexus. The new file is different: the agency appears this time as the potential target and not as the authority in charge of identifying the authors of a stolen base.
A claim that should be handled with caution
ShinyHunters presents the operation in response to a warning issued by the FBI in May. The agency detailed the group’s methods and recommended victims not pay. The collective is known for organizing its intrusions to increase pressure on its targets, which requires separating verified elements from its own statements.
The group recently claimed responsibility for thefts targeting game developer Rockstar Games. We follow the confirmation of a hack after a ransom demand and then the threat of publication of the stolen data. It has also been linked to a campaign against the Canvas educational platform and attacks exploiting Oracle’s PeopleSoft software.
The sample consulted is sufficient to justify protective measures for those potentially exposed, but not to validate the hackers’ broader claims. The FBI has not disclosed the number of victims, the volume of data involved, or the technical point of entry. Your investigation should also establish whether the information was recently taken from FBIJobs.gov or if ShinyHunters gathered multiple sources to add weight to its claim.






