Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data

Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data

黑客组织 ShinyHunters 声称入侵了美国联邦调查局(FBI),窃取了特工及申请人的数据

ShinyHunters, a prolific cybercriminal group known for large-scale data theft and extortion, says it has breached the FBI and stolen data on thousands of agents and applicants. The hackers made the claim on their dark web leak site, which TechCrunch reviewed, saying they had stolen “sensitive data on almost all FBI agents and individuals who filed an application with the FBI for a job.”

以大规模数据窃取和勒索而闻名的多产网络犯罪组织 ShinyHunters 声称,他们已经入侵了 FBI,并窃取了数千名特工和申请人的数据。黑客在其暗网泄露网站上发布了这一声明(TechCrunch 已对此进行核实),称他们窃取了“几乎所有 FBI 特工以及向 FBI 提交过工作申请的个人的敏感数据”。

404 Media first reported on the breach after receiving a sample of the stolen names, home addresses, and phone numbers of FBI agents and their spouses, and verifying a portion of the stolen data against public records. The hackers say their hack is “not financially motivated,” and are demanding that the FBI remove a report that they say contains false allegations about the group.

404 Media 在收到部分被窃取的 FBI 特工及其配偶的姓名、家庭住址和电话号码样本,并通过公共记录核实了部分数据后,首次报道了此次入侵事件。黑客表示,他们的攻击“并非出于经济动机”,并要求 FBI 删除一份他们认为包含有关该组织虚假指控的报告。

The independent publication said the hackers breached an Oracle PeopleSoft server, often used by human resources and recruiters to store job applicants’ personal information, then pivoted to breach an Amazon-hosted government cloud storing the agents and applicants’ data. ShinyHunters told the publication that they took terabytes of data but did not say what they would do with the information if the FBI does not take down its published report.

该独立媒体称,黑客首先入侵了一台 Oracle PeopleSoft 服务器(通常由人力资源和招聘人员用于存储求职者的个人信息),随后转向入侵了一个托管在亚马逊云上的政府云平台,该平台存储了特工和申请人的数据。ShinyHunters 向该媒体透露,他们获取了数 TB 的数据,但并未说明如果 FBI 不撤下其发布的报告,他们将如何处理这些信息。

The stolen data could present a major counterintelligence threat, in which hackers and overseas spies use the information to coerce or extort FBI agents and their families into cooperating with a foreign government. The hackers reportedly defaced the FBI’s jobs site, which showed at the time of publication that the portal was “currently down for maintenance.” The site also said that the FBI’s special agent applicant portal was also down.

被窃取的数据可能构成重大的反间谍威胁,黑客和外国间谍可能利用这些信息胁迫或勒索 FBI 特工及其家人,迫使其与外国政府合作。据报道,黑客还篡改了 FBI 的招聘网站,在本文发布时,该门户网站显示“目前正在维护中”。网站还显示,FBI 的特工申请门户网站也处于关闭状态。

The FBI did not respond to a request for comment about the incident on Tuesday, and neither did the ShinyHunters hackers. This is the second known breach of an FBI system this year after unidentified hackers broke into one of the agency’s systems for managing real-time wiretaps and foreign intelligence-gathering warrants, which could have identified targets of the agency’s surveillance.

FBI 周二未回应置评请求,ShinyHunters 黑客也未作回应。这是今年已知发生的第二起 FBI 系统入侵事件;此前,身份不明的黑客曾入侵了该机构用于管理实时窃听和外国情报搜集令的系统,这可能导致该机构的监控目标身份泄露。

Separately, FBI director Kash Patel also had his personal email account hacked and leaked by an Iran-backed hacking group called Handala in retaliation for U.S.-led strikes against Iran.

此外,FBI 局长卡什·帕特尔(Kash Patel)的个人电子邮件账户也遭到了一个名为 Handala 的伊朗支持的黑客组织的入侵和泄露,以报复美国领导的针对伊朗的袭击。