ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach
AI Summary
The ShinyHunters extortion gang claims to have breached FBI systems using an unpatched zero-day vulnerability in Oracle PeopleSoft, enabling remote code execution and lateral movement into FBI-managed AWS GovCloud infrastructure. They allege exfiltration of 2–3TB of sensitive data, including personally identifiable and health-related information of current and former FBI employees and job applicants. ShinyHunters defaced the FBI Jobs website (apply.fbijobs.gov) with their branding and claim to be exploiting the same vulnerability against Fortune 500 companies. The group stated the attack was retaliation for an FBI FLASH report published in May 2026, and they have not ruled out releasing the stolen data.
AI-extracted · verify before operational use
Extracted Entities 1 found
Indicators of Compromise 1 extracted
| Type | Value | Detail |
|---|---|---|
| Domain | apply[.]fbijobs[.]gov | Details → |