FBI Investigates Apparent Breach of Recruitment Site Following ShinyHunters Extortion Threat
The bureau is probing reported unauthorized activity on FBIjobs.gov after a cybercrime collective claimed to access agent and applicant records.

The Federal Bureau of Investigation is investigating unauthorized activity affecting its recruitment portal, FBIjobs.gov, after cybercriminal group ShinyHunters claimed to have accessed sensitive personal data on nearly all federal agents and job applicants, according to reporting by TechXplore .
The portal, which serves as the agency's primary online platform for career inquiries and job applications, was offline on Wednesday morning. In a formal statement, the FBI confirmed that it is aware of claims regarding unauthorized activity on the site and is currently investigating the incident.
In an online message directed to FBI Director Kash Patel and the assistant director in charge of the bureau's cyber division, ShinyHunters claimed responsibility for the intrusion. The collective alleged it had compromised highly sensitive data belonging to almost all active agents as well as individuals who submitted employment applications to the bureau.
The hacking group's claims have not been independently verified, and an agency spokesperson declined to provide additional details beyond the initial statement. An email sent to an address linked to ShinyHunters was not immediately returned.
ShinyHunters gave the bureau a one-week ultimatum to retract statements from a public service announcement issued in May. That bulletin characterized ShinyHunters as a cybercriminal syndicate specializing in large-scale data breaches and extortion that relies on real or exaggerated claims to solicit payments, frequently threatening victims with non-existent compromising material. The group stated in its message that it was offended by those characterizations.
The inquiry follows other cybersecurity incidents acknowledged by federal authorities this year. In March, the FBI disclosed an investigation into suspicious activity on an internal network containing sensitive records tied to investigations and surveillance operations. That same month, a pro-Iranian group claimed to have breached an account belonging to Patel, publishing personal records, a resume, and photographs online.
Sources
Written by
The Company Wire
Inside the companies building what’s next. Reporting on startups, technology, funding and the people shaping them.



