
Hackers State Attack Was Retaliation for May 2026 Advisory, While Partial Data Verification Raises Concern
The digital extortion group known as “ShinyHunters” stated on Tuesday that it successfully breached the Federal Bureau of Investigation (FBI), compromising data belonging to a vast number of current and former agency employees. The bureau did not respond to repeated requests for comment regarding the incident.
In a dark-web statement and an online chat with Reuters, the group claimed the targeted attack was retaliation for a May 2026 agency announcement that exposed ShinyHunters’ methods and advised targets against paying ransoms. The hackers asserted they stole data encompassing “almost ALL FBI Agents, and individuals who filed an application with the FBI for a job”.
Proof of Breach and Partial Verification
As evidence, the collective provided a screenshot of what they claimed was a vandalized FBI job site alongside a small data sample. Although Reuters could not independently verify the screenshot’s authenticity, the official job site displayed recent disruptions, featuring a message on Tuesday stating that both the platform and the “Special Agent Applicant Portal” were “currently unavailable”.
Reuters partially verified some of the leaked personnel information by cross-referencing names, postal addresses, and Social Security numbers against credit bureau records and historical breach data preserved by dark-web intelligence firm District 4 Labs. In at least nine instances, the details appeared to match. However, investigators could not definitively determine the original source of the data or confirm whether it was extracted directly from internal FBI systems as claimed. Attempts to reach the individuals named in the sample data were unsuccessful.
Background of the Hacking Crew
ShinyHunters remains one of the world’s most notorious and attention-seeking cybercrime collectives. Their recent high-profile operations include the purported theft of millions of business records from video game developer Rockstar Games, creator of “Grand Theft Auto,” and a May intrusion targeting the education tool Canvas, which resulted in widespread disruptions across US schools.
Furthermore, AI firm Anthropic reported catching ShinyHunters-linked actors attempting to exploit its tools earlier this month. In a rare display of public score-settling, the group also informed Reuters on Sunday that it had initiated a “war” against another prominent cybercrime group, cl0p.