ShinyHunters claims FBI hack, data theft in PeopleSoft zero-day breach
ShinyHunters claims it breached the FBI via an unpatched Oracle PeopleSoft zero-day RCE, stealing 2-3TB of employee and applicant data and defacing the FBI Jobs site.
ShinyHunters told BleepingComputer the alleged PeopleSoft zero-day enables remote code execution and was used Monday night for initial access before lateral movement into FBI-managed AWS GovCloud infrastructure. The gang claims it stole 2-3TB of data including PII/PHI on current and former FBI employees and job applicants, defaced apply.fbijobs.gov, and compromised FBI Criminal Justice, HR, and Medlink services. 404 Media received a sample of roughly 5,000 purported FBI employee records and verified some phone numbers as accurate. ShinyHunters says it is now exploiting the same zero-day against Fortune 500 companies and framed the attack as retaliation for a May 2026 FBI FLASH report.