News

ShinyHunters Claims: Hacker Group Alleges FBI Database Breach

The hacker group ShinyHunters, known for its extortion tactics, claims to have gained access to internal FBI systems. According to the group, data on “almost all” current and former FBI employees, as well as individuals who have applied for a position with the agency, were allegedly stolen. Important upfront: This remains solely an assertion by the perpetrators, as PC Gamer reports. No independent, full confirmation from the FBI itself is available.

What Exactly Does ShinyHunters Claim to Have Hacked?

According to the group's own statements, the hackers allegedly infiltrated the application site FBIjobs.gov via a zero-day vulnerability in an Oracle PeopleSoft application and executed code on the servers through it. ShinyHunters told media outlets that the action was “not financially motivated,” as The Register and others report. Instead, the group demands the retraction of an FBI notice from May 2026, in which the agency warned against ShinyHunters’ methods and explicitly advised affected individuals not to comply with ransom demands. On the applicant page, official agency images were also allegedly replaced with an image that the group now uses as a kind of identifier. Again, these are currently only claims from the attackers themselves.

How Is the FBI Reacting to the Allegations?

Reservedly. In response to inquiries, the FBI merely stated, according to reports by US News and Reuters, that it is aware of “allegations of unauthorized activity on FBIjobs.gov” and is currently investigating. There is no explicit mention of confirming an actual breach. Whether the data samples published by ShinyHunters genuinely originate from FBI systems also remains open, even if, according to investigations, individual datasets might appear authentic at first glance. More precise technical details on the alleged attack method via the PeopleSoft vulnerability are summarized by The Hacker News, among others.

For the GTA 6 community, the name ShinyHunters is not unfamiliar. In April 2026, the same group attacked Rockstar's parent company Take-Two via a third-party intermediary: Using the compromised cloud service Anodot, which had access to Rockstar's Snowflake data warehouse, ShinyHunters allegedly obtained approximately 78.6 million analytics datasets and demanded $200,000 in ransom. Rockstar did not pay, whereupon the data was published. According to current knowledge, no source code or unpublished gameplay material for GTA 6 surfaced, unlike the actual GTA 6 data leak of 2022, which was attributed to a completely different attacker. It is precisely this backstory that makes ShinyHunters a name Rockstar and GTA 6 fans should keep in mind, even if the current FBI case itself has nothing to do with gaming.

Should You Simply Believe ShinyHunters' Claims?

From our perspective, caution is advisable here: ShinyHunters has indeed obtained large amounts of data from companies like Microsoft, Ticketmaster, Cisco, and even Rockstar in the past, so the group doesn't operate out of thin air. At the same time, it is part of the strategy of such extortion groups to phrase claims as dramatically and intimidatingly as possible to build pressure, regardless of whether everything in the specific case turns out to be true or not. Until the FBI itself or independent security researchers confirm or deny the incident, the factual situation remains unclear. Anyone who might be affected by the possible incidents, for example, by having once applied to the agency, should keep an eye on developments, even if no official warning to affected individuals is currently issued.

The earlier Rockstar incident concerning GTA 6 demonstrates how persistent stolen data can remain online, regardless of whether it involves gaming companies or government agencies.

Source: PC Gamer, The Hacker News, The Register, US News/Reuters

What do you think of the claim? Do you believe ShinyHunters or not? Share your thoughts in the comments!

Comments (0)

No comments yet — be the first to share your take.