Hackers claim to have compromised the Federal Bureau of Investigation and obtained personal data on all FBI employees. The breach's scope and authenticity have not yet been independently verified.
An unidentified hacking group posted claims on social media stating they had successfully breached FBI systems and accessed employee records. According to the hackers' statements, the data includes information on all current FBI staff members.
The FBI has not yet issued a public statement confirming or denying the breach. Security researchers remain uncertain about the attack's legitimacy, as similar claims surface periodically without substantiation.
If authentic, the incident would represent a significant cybersecurity failure at a major U.S. government agency. The potential exposure of employee personal data could create security risks for active agents and staff members.
The hackers have not specified how they gained access or whether they plan to release the data publicly. Law enforcement agencies typically face strict requirements around employee data protection due to the sensitive nature of FBI operations.
Further details about the breach's scope and timeline are expected to emerge in coming days as authorities investigate.
Researchers at Cisco Talos developed a new framework to detect malware and hacking tools powered by AI chatbots. The discovery revealed an unusual threat: autonomous malware operating without human handlers.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency directive ordering federal agencies to patch a high-severity vulnerability in Zyxel GS1900 series switches. Attackers are actively exploiting the flaw to steal data.
WordPress disclosed an unauthenticated path traversal vulnerability that could lead to conditional remote code execution. The issue affects WordPress core and has been documented in an official security advisory.
Security researchers have demonstrated an attack allowing hackers with privileged access to register fake MFA providers and harvest user passwords during login. The vulnerability exploits the authentication process itself.