
Hackers claim they stole blood tests, urine results, and psychiatric notes belonging to thousands of Federal Bureau of Investigation (FBI) agents, and the bureau admits it is investigating a breach it cannot yet explain.
Quick Take
- A hacking group called ShinyHunters says it stole personnel data from the FBI’s job application portal, FBIjobs.gov.
- Reuters reviewed documents showing the stolen files include psychiatric evaluations and medical test results for agents.
- The FBI confirms it is investigating but has not said where the breach started or confirmed the medical claims.
- Reports say the data may cover close to 38,000 current and former employees and job applicants.
What The Hackers Claim They Took
ShinyHunters told reporters it broke into FBIjobs.gov, the bureau’s online hiring site, then moved into deeper systems. The group says it grabbed names, home addresses, phone numbers, spouse information, badge numbers, and roles for almost every FBI agent and applicant on file.
Reuters reported the haul also includes sensitive psychiatric and medical evaluation records tied to bureau staff.
EXCLUSIVE: ShinyHunters hackers say they stole psychiatric and medical records of FBI staff https://t.co/WSSfhtSPFy https://t.co/WSSfhtSPFy
— Reuters (@Reuters) September 25, 2026
BBC News says it reviewed samples of stolen “fitness-for-work” medical exams. Those files reportedly include blood and urine test results along with doctors’ notes describing specific health conditions.
If genuine, that kind of file goes far beyond a typical data leak. It touches the kind of personal history that could be used to pressure or blackmail an armed federal agent.
Why This Breach Worries Security Experts More Than Most
Stolen credit card numbers get replaced. Stolen medical and psychiatric histories cannot be changed. Security analysts note that foreign intelligence services have long hunted for exactly this kind of leverage material on law enforcement officers.
A file showing a therapy history, a medication, or a failed drug screen becomes a tool for coercion, not just embarrassment, especially against agents working sensitive counterintelligence cases.
The New York Times reported the hackers say they pulled data from an online jobs portal used by both current employees and outside applicants, meaning the exposure could stretch well past active agents.
That widens the pool of potential victims to people who applied for FBI jobs years ago and may not even remember submitting sensitive paperwork through the portal in the first place.
The FBI’s Response Has Been Careful, Not Dismissive
The bureau has not outright denied the hackers’ claims. In a statement, the FBI said it “is aware of a cyber-criminal enterprise group claiming a compromise of the FBIJobs.gov portal and alleged impact to FBI employee personally identifiable information”.
That is a notably measured response for an agency whose own staff may be exposed, and it suggests investigators are still piecing together what actually happened.
The FBI also said the point of entry remains undetermined, meaning it does not yet know whether the failure lies with the bureau’s own systems or an outside vendor that helps run the jobs site.
That distinction matters. If a third-party contractor got breached, it raises hard questions about how much sensitive government data sits with private companies that answer to fewer oversight rules than the bureau itself.
A Pattern Cybercriminals Have Used Before
ShinyHunters has a track record of hitting large organizations and threatening to publish stolen files unless demands are met, a tactic security researchers say is designed to maximize pressure and media attention.
Extortion groups often exaggerate the scope or sensitivity of what they hold, because a bigger scare story means more leverage. That does not make the FBI’s acknowledgment of an active breach any less serious, but it is worth remembering as more claims surface.
What is confirmed right now is this: the FBI is actively investigating, the jobs portal was reportedly taken offline amid the fallout, and multiple news organizations independently reviewed sample records matching the hackers’ claims. Whether every file the group boasts about is real remains an open question the bureau has not yet answered publicly.
For thousands of agents who signed up to protect the country, the idea that their private medical history could become a bargaining chip for criminals is the kind of betrayal that demands real answers, not just a promise to look into it.
An alleged hack of FBI personnel files includes "extremely sensitive medical data for thousands of its special agents," and "blood and urine test results" are among the stolen records, according to a report from BBC News. https://t.co/4pX2kTPN8r
— ABC News (@ABC) September 27, 2026
Congress and bureau leadership now face pressure to explain how a hiring website became a door into agents’ most private records, and what protections, if any, existed to stop it.
Sources:
abcnews.com, reuters.com, bbc.com, nytimes.com, globalbankingandfinance.com














