Skip to content

FBI investigates hacking claim amid hiring portal outage

A hacking group claims it accessed FBI systems. The bureau has not confirmed a breach, while its recruiting website and applicant portal have been unavailable.

Entrance to the J. Edgar Hoover FBI Building, with its name above dark doors and an FBI seal on the wall to the left.
The entrance to the FBI’s J. Edgar Hoover Building in Washington, D.C., in a 2024 file photo. (Tony Webster/Wikimedia Commons)

The FBI’s recruiting website and application portal were unavailable for a second day Wednesday as the bureau investigated a hacking group’s claim of unauthorized access, disrupting online job searches and applications.

The FBI’s applicant guide says the public website describes positions and qualifications, while the separate portal lets candidates apply, upload documents and track applications.

During a Wednesday afternoon check, DysruptionHub found a maintenance notice on the application portal and a temporary-unavailability message on the recruiting website. Neither explained why the services were down. Reuters reported that both were unavailable Tuesday.

Screenshot of an FBIJobs maintenance page with two dogs pictured beside a notice saying the site is down. Links to the FBIJobs home and eligibility pages appear on the right.
The FBI’s applicant portal displayed a maintenance notice saying the site was down. The notice did not identify the cause of the outage. (DysruptionHub screenshot of FBIJobs.gov)

The FBI said Wednesday it was investigating a claim that its jobs portal had been compromised and employee information affected. It said it had not determined whether the alleged breach involved a third-party provider or its own systems.

ShinyHunters claimed it entered FBI systems and stole employee and applicant data. BleepingComputer reported that the group supplied an image purporting to show the application portal defaced. The outlet said it could not verify the group’s claims about a previously unknown Oracle PeopleSoft flaw, access to other systems or the amount of data taken.

Side-by-side images show a ShinyHunters leak-site statement addressed to FBI leaders and a browser page labeled apply.fbijobs.gov displaying a ShinyHunters message and ASCII-art figure.
A statement on ShinyHunters’ leak site, left, and an image the group supplied purporting to show the FBI’s job application portal defaced, right. The images do not independently establish the group’s breach claims. (BleepingComputer (left); ShinyHunters via BleepingComputer (right).)

BleepingComputer documented a statement on ShinyHunters’ leak site, but DysruptionHub could not find the statement during a Wednesday check.

Reuters reported that it partially verified details in a sample of purported personnel records but could not establish where the data came from. Politico reported that two people with knowledge of the investigation said investigators considered the group’s claims credible. The FBI has not confirmed an internal breach or data theft.

Chip in once
If this reporting helped you, a one-time tip helps cover hosting, tools and future investigations.

Tip us

Support us monthly
A small monthly pledge keeps independent coverage and our reader tools online for everyone.

Become a Supporter

In August, the ransomware group Qilin claimed an intrusion at ATF. The agency disconnected a standalone investigative system but said it retained its broader mission capability; it has not attributed the intrusion to Qilin. Public ransomware and data-extortion claims against federal agencies remain uncommon compared with attacks on schools, hospitals and local governments.

The portal’s notice gave no restoration time or guidance for applicants facing deadlines.

DysruptionHub Staff

DysruptionHub Staff

DysruptionHub Staff is the publication’s organizational byline for reports based on public statements, government records, regulatory filings and other available material when no single journalist contributed substantial original reporting.

All articles

More in Government

See all

More from DysruptionHub Staff

See all