FBI employee and applicant data leak claim
Data Leak
Updated: 22.09.2026 22:13
· First: 22.09.2026 22:13
· 📰 3 src / 4 articles
· H score: 84
ShinyHunters claims it used an Oracle PeopleSoft flaw to reach FBI Jobs systems and then moved into FBI-managed AWS GovCloud infrastructure. The group also claimed a 2TB to 3TB theft tied to current and former FBI employees and job applicants, with exposure affecting Criminal Justice (CJ), HR, Medlink, and other internal services. The FBI said it is investigating unauthorized-activity claims affecting FBIjobs.gov, and the access and leak claims remain unverified. Later reporting says the same PeopleSoft thread is being reused with a URL-encoding bypass against CVE-2026-35273, allowing renewed exploitation of unpatched servers and deployment of web shells.