被黑客窃取的FBI数据包含员工情报工作敏感信息


2026-09-23T18:05:26.627Z / 路透社

华盛顿,9月23日(路透社)——路透社调查发现,据称被黑客组织ShinyHunters窃取的FBI数据包含数十名该局官员工作任务的详细细节,其中包括针对中国间谍、俄罗斯情报机构、贩毒集团等敏感工作内容。

这份包含5000行数据的电子表格——黑客称其仅占他们声称获取的2至3太字节数据宝库的一小部分——包含了他们所称的数千名FBI员工的姓名、地址、电话号码、出生日期、社保号码以及紧急联系方式。此外,表格还包含了员工被分配到具体外勤办公室的细节,在某些情况下,还涉及从事高风险情报、安全或反间谍工作的部门。

《错误信息监测》简报汇总了国际错误信息叙事,每一期都包含“真实还是虚假?”测试题。点击此处订阅。

FBI在一份声明中表示,其已知晓“一个声称入侵FBIJobs.gov门户网站并据称影响FBI员工个人身份信息的犯罪网络团伙”。该局表示,此次数据泄露的原因仍未确定,但正在“积极且全力调查此事”。

黑客于周二声称他们入侵了FBI,窃取了大量在职和离职FBI员工的数据。ShinyHunters表示,他们将扣押这些数据作为人质,直到FBI撤回今年5月发布的一份对该组织不利的声明。

前FBI反情报特工埃里克·奥尼尔表示,据称被ShinyHunters窃取的数据“对外国情报机构来说是一座金矿”。

“中国会极其想知道那些针对其开展工作的人员身份,”曾在该局任职后创立网络安全公司Nexasure AI的奥尼尔说道。他预测,其他敌对情报机构以及美国国内心怀不满的极端分子都会急于获取这份数据。

“如果我在这份名单上,我会非常担忧,”他说。

ShinyHunters在周三的一份声明中表示,他们目前正试图防止人员信息大范围泄露。
“如果这5000条样本数据记录被泄露,那不是我们干的,”该组织称。

尽管路透社无法验证整个电子表格的真实性,但该社已通过将被黑客窃取的数据中的信息与信用记录以及暗网情报平台District 4 Labs此前公布的数据泄露信息进行交叉比对,逐一核实了超过22人的详细信息。

反恐、反情报与监视行动

ShinyHunters提供的数据中的部分任务细节与员工可能公开透露的内容并无二致,例如提及驻巴尔的摩或新泽西州纽瓦克外勤办公室的特工。

但在某些情况下,数据所提及的FBI部门或行动属于敏感内容,或是此前从未公开过其存在的项目。

数据显示有14名工作人员专注于涉华事务,其中包括“中国犯罪活动专案组”“中国技术转让分析小组”以及“中国情报科”的成员。

另有9人被列为担任涉俄相关职务,其中包括2名“俄罗斯行动科”成员以及1名负责“俄罗斯关键基础设施与技术威胁”的工作人员。另有3人被列为从事针对伊朗或真主党的情报工作。

另有18人被列为从事“数据截获”或“电信截获”技术相关工作,或是在FBI“秘密技术行动”部门、“隐蔽接入科”,或是从事视频、音频或电子监视工作。

另有11名FBI工作人员被列为从事人类情报(HUMINT)工作,其中数人被列入“人类情报项目管理科”。

曾与FBI合作的前陆军调查人员特雷弗·希利戈斯表示,将具体姓名的人员与人类情报工作联系起来的信息尤其令人不安。

“你不难找到卧底特工身份暴露后受到伤害的案例,”他说。

现已成为网络安全公司SpyCloud首席情报官的希利戈斯表示,紧急联系方式——通常是配偶或子女——的 inclusion 加剧了他的担忧,“这些人的行动安全知识往往不如他们从事敏感领域工作的亲属”。

路透社无法核实所有工作任务的真实性或时效性,但该社已将8名数据被泄露人员的职业细节或头衔与法庭文件、新闻报道或领英等公开资料、以及Instagram等网站上的在线帖子中的信息进行了比对匹配。

其他攻击目标

ShinyHunters此前声称对从电子游戏开发商Rockstar Games(《侠盗猎车手》的制作方)窃取数百万条商业记录,以及入侵教育工具Canvas导致美国学校大范围停摆的事件负责。

今年5月,FBI表示ShinyHunters有时会“夸大其获取敏感或个人信息的能力,以促使受害者支付赎金”。

ShinyHunters表示其“威胁和声明都是千真万确的”,并补充说FBI的声明正是他们将该局作为攻击目标的原因。

路透社无法核实黑客手中还掌握有哪些其他数据。ShinyHunters此前曾告诉路透社,他们获取了与员工和申请人背景审查、背景调查合同以及特工敏感医疗数据相关的文件,但在周三表示不会再发布任何更多数据。

前FBI特工奥尼尔告诫人们不要对黑客掌握的数据妄下结论。

“他们其实就是想把FBI吓得魂飞魄散,”他指出。

拉斐尔·萨特和AJ·维肯斯报道;克里斯·桑德斯和大卫·加芬编辑

Hacked FBI data has sensitive information about employees’ intelligence roles

2026-09-23T18:05:26.627Z / Reuters

WASHINGTON, Sept 23 (Reuters) – FBI data allegedly stolen by the hacking group ShinyHunters carries granular detail about scores of bureau officials’ job assignments, including sensitive work against Chinese spies, Russian intelligence, drug cartels, and more, Reuters has found.

The 5,000-line spreadsheet – said by the hackers to represent only a small piece of their claimed two- to three-terabyte trove – includes names, addresses, telephone numbers, dates of birth, social security numbers, and emergency contact details for what they claimed were thousands of FBI employees. It also includes details of assignments to specific field offices and, in some cases, to units engaged in high-stakes intelligence, security, or counterespionage work.

The Misinformation Monitor newsletter rounds up international misinformation narratives, with a “Real or Fake?” quiz in every edition. Sign up here.

In a statement, the FBI said it was aware of “a cyber-criminal enterprise group claiming a compromise of the FBIJobs.gov portal and alleged impact to FBI employee personally identifiable information.” The bureau said the cause of the breach was still undetermined, but that it was “actively and aggressively investigating the matter.”

The hackers said on Tuesday that they had breached the FBI, stealing data on a large number of current and former FBI employees. ShinyHunters said it is holding the data hostage until the bureau rescinds an unflattering statement about the group issued in May.

Former FBI counterintelligence operative Eric O’Neill said the data allegedly stolen by ShinyHunters was “a foreign intelligence service goldmine.”

“China would be incredibly interested to know the individuals who are working against it,” said O’Neill, who founded the cybersecurity company Nexasure AI after his stint at the bureau. He predicted that other hostile intelligence services would be eager to get their hands on the data, along with disgruntled extremists in the United States.

“If I were on that list I would be very concerned,” he said.

ShinyHunters said in a statement Wednesday that it was trying to keep the personnel information from circulating widely in the meantime.

“If the 5,000 sample data records leak, it’s not because of us,” the group said.

Although Reuters has not been able to authenticate the entire spreadsheet, it has been able to individually verify the details of more than 22 people by cross-referencing information in the hacked data with credit records and previous data leaks carried by the dark web intelligence platform District 4 Labs.

COUNTERTERRORISM, COUNTERINTELLIGENCE AND SURVEILLANCE

Some of the assignment details in the ShinyHunters’ data are indistinguishable from what employees themselves might say publicly, noting agents at field offices in Baltimore or Newark, New Jersey, for example.

But in some cases, the data referred to FBI units or initiatives that were sensitive or whose existence has not previously been disclosed.

The data names 14 staffers focused on China-related matters, including members of the “China criminal enterprise unit,” the “China tech transfer analysis unit,” and the “China intelligence section.”

Nine others are listed as serving in Russia-related roles, including two in the “Russia Operations Section” and one working on “Russia Critical Infra and Tech Threat.” Three people are listed as working in Iran- or Hezbollah-focused intelligence roles.

Eighteen others are listed as working with “data intercept” or “telecom intercept” technologies, or in the FBI’s “clandestine technical operations” unit, or its “covert access section,” or in video, audio, or electronic surveillance roles.

A further 11 FBI staffers are listed as working in HUMINT, or human intelligence, jobs, including several listed as working in the “Humint program management section.”

Trevor Hilligoss, a former Army investigator who worked with the FBI, said the information tying specific named people to human intelligence work was particularly troubling.

“You don’t have to look far to find examples of undercover agents being harmed when their cover is blown,” he said.

Hilligoss, now the chief intelligence officer for cybersecurity company SpyCloud, said his concerns were heightened by the inclusion of emergency contacts – often spouses or children – “who may have less operational security knowledge than their relative that works in a sensitive field.”

Reuters could not verify that all the job assignments were authentic or up-to-date, but it was able to match the career details or titles of eight people whose data was leaked to information in court filings, news articles, or public profiles on LinkedIn or to online posts on sites such as Instagram.

OTHER TARGETS

ShinyHunters previously claimed credit for the purported theft of millions of business records from video game developer Rockstar Games, the maker of “Grand Theft Auto,” and an intrusion focused on the education tool Canvas that triggered widespread disruption across U.S. schools.

In May, the FBI said ShinyHunters sometimes used “exaggerated claims of access to sensitive or personal information to prompt payment from victims.”

ShinyHunters said its “threats and claims are very real,” adding that the FBI’s statement was why it targeted the bureau.

Reuters has not been able to verify what else the hackers are holding. ShinyHunters previously told Reuters they obtained files related to the vetting of employees and applicants, the contracting of background investigations, and agents’ sensitive medical data, but said on Wednesday it would not release any further data.

O’Neill, the former FBI operative, cautioned against drawing conclusions about what the hackers hold.

“They’re really trying to scare the hell out of the FBI,” he noted.

Reporting by Raphael Satter and AJ Vicens; editing by Chris Sanders and David Gaffen

评论

发表回复

您的邮箱地址不会被公开。 必填项已用 * 标注

湘ICP备2026001899号-2