FBI Data Heist: Agents’ Addresses, Family Details And Secret Assignments Exposed In Shocking Breach

FBI Data Heist: Agents’ Addresses, Family Details And Secret Assignments Exposed In Shocking Breach


News world FBI Data Heist: Agents’ Addresses, Family Details And Secret Assignments Exposed In Shocking Breach

Last Updated:

Though hackers ShinyHunters say they will not publish the stolen data, cybersecurity experts warn that the threat may not disappear simply because the files are not posted online

A massive alleged data theft from the FBI’s jobs portal--- FBIJobs.gov---has exposed a potentially dangerous trove of information on current and former bureau employees. (AFP)

A massive alleged data theft from the FBI’s jobs portal— FBIJobs.gov—has exposed a potentially dangerous trove of information on current and former bureau employees. (AFP)

Home addresses. Social Security numbers. Family details. Travel information. And, potentially, the secret assignments of FBI personnel working on some of America’s most sensitive national-security cases.

A massive alleged data theft from the FBI’s jobs portal— FBIJobs.gov—has exposed a potentially dangerous trove of information on current and former bureau employees, raising fears that the records could be used to target agents, their families or sensitive operations.

The New York Times, which reviewed a sample of records allegedly obtained by the hackers, reported that the information appeared to include names, home addresses, phone numbers, work email addresses, Social Security numbers, birth dates and hiring dates of current and former FBI personnel. The records also reportedly contained names and contact details of spouses and other emergency contacts, including parents, siblings and children.

Even more sensitive were details of the units in which some FBI employees work. According to The New York Times, the sample included personnel associated with counterintelligence, narcotics and desks focused on Russian, Chinese and Iranian national security threats.

Some records also reportedly contained employee identification information used for the Transportation Security Administration’s PreCheck programme, potentially offering information that could help track the travel of agents.

The FBI has not publicly confirmed the full list of information compromised or the number of people affected. However, the hacking group, ShinyHunters, has claimed that the stolen records involve tens of thousands of people.

‘We Had Made Our Decision’

ShinyHunters initially threatened to release the stolen information unless the FBI withdrew or corrected an advisory issued against the group.

But in a statement on Monday, the hackers claimed they had never intended to publish the data. “Since the very beginning we had made our decision that we would never publish this data,” the group said, according to The New York Times.

It described the operation as a “marketing campaign to protect our business” and said it was “not taking any further actions” with the data. “We seek no escalation as our goals have widely been accomplished,” the group said.

The claims, however, have not eliminated concerns over what could happen to the allegedly stolen information.

Cybersecurity experts have warned that even if the files are not publicly dumped, they could potentially be sold or handed to other criminals or foreign intelligence services.

Andrew Brandt, a threat intelligence researcher at cybersecurity company Huntress, told The New York Times that the bigger concern was ShinyHunters selling the data to criminal or nation-state groups that could put it to more damaging use.

FBI Warns Employees

The FBI has told its workforce that it is treating the incident as a cybersecurity matter and has warned employees to remain vigilant.

According to an internal memo described by The New York Times, bureau leadership said it was “operating under the premise that the threat actor is also exfiltrating PII of all FBI employees”.

The memo advised employees to report unsolicited contacts or threats, avoid answering calls from unknown numbers and take precautions with their voicemail. “Bureau leadership remains committed to supporting the safety of you and your family,” it said.

The FBI said it was “working around the clock” to investigate the incident and was communicating with people who could be affected.

The bureau first publicly acknowledged the alleged breach on September 23, saying it was aware of claims by a cybercriminal group that FBIJobs.gov had been compromised and that employee personal information may have been affected.

Sensitive Assignments Raise Bigger Security Concerns

The alleged theft is particularly concerning because the data goes beyond ordinary personal information.

A database combining an agent’s identity, home address, family information and professional assignment could potentially be valuable to criminals or foreign intelligence services.

The New York Times quoted Ciaran Martin, the former head of Britain’s cyberdefence agency, as saying the FBI hack likely had a “huge impact on the operational capability” of the bureau. Andrew Brandt said: “It doesn’t take much imagination to picture scenarios where employees or their families could be threatened or harmed by this kind of information being released.”

Experts have also warned that information from different breaches can be combined to create detailed profiles of individuals. Justin Sherman, a senior associate at the Center for Strategic and International Studies, wrote that “breaches do not exist in a vacuum”, pointing to the possibility that exposed datasets could be combined with information already available elsewhere.

Medical Records Also Allegedly Stolen

ShinyHunters has also claimed that it obtained medical information belonging to FBI employees, including psychiatric records and documents relating to blood and urine tests.

Reuters separately reported that the group claimed to have stolen psychiatric and medical evaluation records, including documents relating to fitness-for-duty examinations and clinical information. Reuters said it was able to partially verify some of the documents but could not establish the full scope of the alleged theft.

The FBI has not publicly confirmed the hackers’ claims about medical records.

How Did The FBI Hack Happen?

The exact route used to compromise the system remains unclear.

ShinyHunters has claimed that it exploited a previously unknown vulnerability in Oracle PeopleSoft, software used for human resources and financial management.

Google’s threat intelligence unit has separately reported that ShinyHunters has been carrying out a renewed campaign exploiting a vulnerability in Oracle PeopleSoft. Reuters reported that the campaign has targeted organisations across sectors including government, healthcare, education and technology.

However, the FBI has not publicly confirmed that the PeopleSoft vulnerability was the method used in the FBI breach. The agency’s job portals have remained offline following the incident.

Why The Data Could Be So Valuable

Security researchers say the potential danger lies in the combination of information contained in the records.

An agent’s home address or phone number may be sensitive on its own. But when combined with details about the agent’s family, employment history, supervisor and intelligence assignment, the information could provide a much fuller picture to someone trying to identify or target that person.

Reuters reported that a sample of the allegedly stolen data included information on thousands of current and former FBI employees and job assignments, including sensitive counterintelligence and national-security roles. Reuters was able to verify portions of the sample but said it could not authenticate the entire dataset.

The concern is particularly acute for personnel involved in undercover or sensitive investigations, whose identities and professional roles are normally closely protected.

FBI Investigates Full Scale Of Breach

The FBI has yet to establish the complete scale of the incident.

The bureau said the point of breach was still being determined and that it was working with third-party providers supporting FBIJobs.gov to investigate and mitigate the risks.

The incident has nevertheless emerged as one of the most serious alleged compromises of sensitive FBI personnel information in recent years.

And while ShinyHunters now says it will not publish the stolen data, cybersecurity experts warn that the threat may not disappear simply because the files are not posted online.

As one expert put it to The New York Times, the greater concern could be what happens if the information reaches someone else rather than whether ShinyHunters itself publishes it.

Quick Answers

Powered by

ask search iconAsk News18

The alleged data breach exposed personal and professional information of current and former FBI personnel, including home addresses, Social Security numbers, phone numbers, birth dates, family details, emergency contacts, and sensitive work unit assignments involving counterintelligence and national security threats. Additionally, the hackers allegedly stole medical and psychiatric records.

Powered by

ask search iconAsk News18

About the Author

When he beat Misra

When he beat Misra

Apoorva Misra is an Associate Editor at News18.com with a keen interest in politics and current affairs. She loves uncovering fresh angles and telling stories through long-form features and explainers…Read More

Disclaimer: Comments reflect users’ views, not News18’s. Please keep discussions respectful and constructive. Abusive, defamatory, or illegal comments will be removed. News18 may disable any comment at its discretion. By posting, you agree to our Terms of Use and Privacy Policy.

Read More



Source link
[ad_3]

Leave a Reply

Your email address will not be published. Required fields are marked *