Hackers say they stole sensitive medical records belonging to thousands of current and former FBI staff. BBC News says it reviewed samples of the alleged data, which include blood and urine test results, doctors’ notes, names and addresses.
The hacking group ShinyHunters claims it breached FBI systems on Monday by exploiting a vulnerability in an Oracle cloud storage system used by the agency. The group says it accessed several platforms, including FBI MedLink, which stores medical records, and is demanding that the FBI retract an advisory published in May. It has threatened to publish the full dataset in five days if its demands are not met.
The FBI acknowledged the breach on Wednesday and said it was “aggressively investigating” how it happened. It said it was working with third-party providers supporting FBIJobs.gov to reduce risk and was still determining whether hackers had accessed FBI systems directly or compromised a provider.
ShinyHunters initially said the breach affected 38,000 current employees, then claimed it held information on around 60,000 current and former staff. Those figures come from the hackers and have not been independently confirmed. Jamie Akhtar, chief executive of CyberSmart, said their claims should be treated with caution. Experts cited by the BBC warned that exposed records could enable scams, impersonation, blackmail or targeted attacks.
Comments
0No comments yet. Be the first to comment.