Posted

FBI first acknowledges leak of agents’ personal data after cyberattack

The Federal Bureau of Investigation has notified agents and support staff that their personal data was stolen in a cyberattack on the FBIJobs.gov employment portal. In an internal message, the bureau described the event as a “cybersecurity incident.”

Employees were told that their names, addresses, job titles, and Social Security numbers had been exposed. This is the FBI’s first acknowledgment that personal data belonging to its agents was affected by the incident.

Earlier, the group ShinyHunters claimed it had gained access to FBIJobs.gov and stolen a large volume of information on current and former bureau employees, as well as job applicants. The hackers said the stolen records included names, home addresses, phone numbers, information about spouses, and Social Security numbers. Portions of a sample provided to journalists appeared authentic, according to several news organizations.

In public statements, the FBI confirmed it was aware of claims that the portal had been compromised and that employee personally identifiable information may have been affected. It stressed that the point of breach had not yet been determined and could involve either the bureau’s own systems or third-party contractors that support FBIJobs.gov. The agency said it was actively investigating and working with providers to reduce the risk.

The FBI job-application portal was temporarily unavailable after the incident. Experts and former employees noted that the leak of home addresses and family contacts creates operational-security risks for agents, including those involved in counterintelligence and source handling.

The investigation continues. The FBI has not yet released a full official assessment of the scale of the leak or a precise list of the systems that were affected.