2026年9月29日 / 美国东部时间上午10:33 / 哥伦比亚广播公司新闻
美国联邦调查局(FBI)与荷兰国家警方周二表示,他们已逮捕臭名昭著的网络团伙“ShinyHunters”的一名疑似成员。该团伙此前声称对上周篡改FBI招聘网站一事负责,并吹嘘其窃取了FBI工作人员和求职者的数据。
荷兰国家警方周二透露,这名嫌疑人是一名24岁的阿姆斯特丹居民,于9月15日因涉嫌为ShinyHunters成员被捕。这意味着他在ShinyHunters宣布入侵FBI招聘网站数日前就已被拘留,而该事件最早由404 Media于9月22日报道。
荷兰当局表示,该嫌疑人还涉嫌煽动实施两起谋杀案。
荷兰当局称,他们查获了多个数据存储设备,不排除在该案中进一步逮捕人员的可能。警方在其笔记本电脑中发现了大量信息,包括计划在境外实施的两起谋杀案的细节。荷兰当局表示,该嫌疑人目前被单独监禁,预计将被审前拘留至少90天。
FBI网络安全部门助理局长布雷特·莱斯曼周二表示,荷兰当局得到了FBI的“全力支持”。
“自去年以来,这名网络罪犯及其同谋据称已入侵140多家机构,勒索了至少7000万美元赎金,”莱斯曼说。“他们通常以第三方供应商和云平台为目标,窃取敏感数据,并以公开数据相威胁对受害者实施勒索。”
FBI局长卡什·帕特尔在X平台的一篇帖子中并未透露被捕者的身份,但将其称为该组织“所谓的头目之一”。帕特尔写道:“就在我们发言之际,FBI团队正根据此次逮捕行动,与合作伙伴积极合作,获取并推进正在进行的调查中的更多线索。”
FBI在一份声明中表示,其正在“全天候调查涉及FBIJobs.gov的网络事件”,并将与所有可能受影响的人员保持定期沟通——包括在公开报道后的24小时内发布了多条全机构范围内的通知。FBI还表示,调查仍在进行中。
上周,ShinyHunters在暗网发布的帖子以及与多家媒体的沟通中声称,其窃取了约2至3太字节与FBI和司法部工作人员相关的数据。黑客们表示,他们利用了人力资源管理软件Oracle PeopleSoft中的一个新漏洞。
在上周二的其中一篇帖子中,ShinyHunters向帕特尔和莱斯曼喊话称:“我们已经入侵了FBI。”
这些网络罪犯表示,他们掌握了几乎所有FBI特工以及FBI求职者的敏感信息。他们列出的受影响服务包括刑事司法、人力资源和Medlink系统。
周一,《纽约时报》报道称,FBI员工收到了一封内部电子邮件,将此次入侵定性为一起网络安全事件,并承认部分员工的个人信息被盗。
据一名了解内部沟通情况的消息人士透露,近日发送给FBI员工的这份内部安全通知证实,黑客确实获取了员工信息,部分信息样本已分享给部分特定媒体人士。
FBI告知员工,目前多个部门正在调查此次数据泄露事件,并为受影响人员协调提供支持。
员工们还被建议加强安全防范措施,并报告可能遇到的可疑联系、骚扰或任何威胁。
这份内部通知还告知员工,该局正在为受影响员工及其家属评估额外的身份保护及相关支持服务。
FBI发言人拒绝就该通知的内容置评,但表示事件发生以来,该局一直与员工保持持续沟通,并补充称,随着更多信息的披露,FBI一直在发布通知和最新进展。
Dutch National Police arrest member of group that claimed to have hacked FBI
September 29, 2026 / 10:33 AM EDT / CBS News
The FBI and the Dutch National Police said Tuesday that they had arrested suspected member of the notorious cyber group ShinyHunters, the group that claimed responsibility for last week’s defacing the FBI’s jobs website and bragged that it had stolen data about FBI personnel and job applicants.
The Dutch National Police said Tuesday that the suspect is a 24-year-old from Amsterdam, and was arrested on September 15 on suspicion of being a member of ShinyHunters. That means he was already in custody days before ShinyHunters announced it had hacked the FBI jobs website, which was first reported on Sept. 22 by 404 Media.
He is also suspected of attempting incitement to commit two murders, Dutch authorities said.
The Dutch authorities said they had seized several data carriers and further arrests in the case could not be ruled out. They said a large amount of information was discovered on his laptop, including the details about the two murders that were supposed to be committed abroad. The suspect is being held in insolation, and he is expected to be held in pre-trial detention for at least 90 days, Dutch authorities said.
FBI Cyber Division Assistant Director Brett Leatherman said Tuesday that Dutch authorities had the “full support” of the FBI.
“Since last year, this cybercriminal and his co-conspirators have allegedly breached more than 140 organizations and taken at least $70 million in extortion payments,” Leatherman said. “They often target third-party vendors and cloud-based platforms, stealing sensitive data and extorting victims with threats to publishing.”
In a post on X, FBI Director Kash Patel did not identify the individual who was arrested, but referred to the person as “one of the alleged leaders” of the organization. “As we speak FBI teams are actively working with partners to obtain and execute more leads in the ongoing investigation based on this arrest,” Patel wrote.
The FBI said in a statement that it is “working around the clock to investigate the cyber incident involving FBIJobs.gov and is in regular communication with anyone who may be impacted — including multiple Bureau wide communications within 24 hours of public reporting.” The FBI also said that the investigation is ongoing.
Last week, ShinyHunters claimed in communications posted on the dark web and exchanges with multiple media outlets that it stole two to three terabytes of data related to FBI and Justice Department workers. The hackers said they used a new vulnerability in Oracle PeopleSoft, a human resources management program.
In one such post last Tuesday, ShinyHunters addressed Patel and Leatherman, saying: “We have compromised the FBI.”
The cybercriminals said they possessed sensitive information concerning nearly all FBI agents, as well as people who applied for FBI jobs. It listed criminal justice, human resources and Medlink systems among the services that were affected.
On Monday, The New York Times reported that FBI employees had received an internal email that declared the hack to be a cybersecurity incident and acknowledged that personal information of some employees had been stolen.
That internal security notice sent to employees at the FBI recently confirmed that hackers did obtain employee information, a sample of which was shared with some select members of the media, according to a source with knowledge about the internal communication.
The FBI told employees that multiple divisions are now investigating the breach and coordinating support for those who were impacted.
Employees were also advised to take heightened security precautions and that they should report suspicious contacts, harassment or any threats they may receive.
The internal communication also told employees that the bureau is evaluating additional identity protection and related support services for affected employees and their families.
An FBI spokesperson declined to comment on the notice’s contents, but said that the bureau has been in constant communication with its employees since the incident took place, and added that the FBI has been providing notifications and updates as more information became available.
发表回复