Back to advisories

ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants

ShinyHunters claims successful breach of FBI systems via zero-day in Oracle PeopleSoft, exfiltrating data on FBI agents and job applicants. FBI has confirmed the incident is under investigation. This represents a high-confidence threat to federal personnel security and operational security.

CRITICALAdvisorySep 24, 2026
Action required
Immediately audit Oracle PeopleSoft instances across your environment for unauthorized access and data exfiltration. If you run PeopleSoft, isolate affected systems, review access logs for the past 90 days, and prepare for emergency patching when Oracle releases fixes.
Affected products
OraclePeopleSoftFBIjobs.gov