The Federal Bureau of Investigation (FBI) has removed an Accenture contractor following a damaging data breach that exposed sensitive personal information belonging to thousands of bureau employees, according to two people familiar with the matter.
The development comes as the FBI continues to assess the full impact of the breach, which has raised concerns about the security of systems used to manage sensitive information about its workforce.

Credits: Reuters
FBI Blames Failure to Apply Security Patch
A senior FBI official told Reuters that the breach resulted from a security failure involving a platform managed by a third-party organization.
The official said a contractor responsible for the system had failed to implement a security patch that had been specifically issued to address the vulnerability.
“To date, our review has determined that the incident occurred as the result of a security failure of a platform managed by a third-party organization,” FBI cyber chief Brett Leatherman said.
The FBI said it had removed the contractor and taken steps to reduce further risks and protect its employees. The bureau did not identify the contractor, the platform or the third-party organization involved.
Two sources familiar with the investigation identified the platform as Oracle’s PeopleSoft, a human resources system that was allegedly exploited by the hacking group ShinyHunters to gain access to the FBI’s employment website.
Oracle did not immediately respond to a request for comment.
Accenture Linked to Compromised Platform
The sources also identified Accenture as the third-party organization managing the platform. Reuters was unable to determine the identity of the specific contractor or establish whether the individual remains employed by Accenture.
Accenture said it was proud to support the FBI’s mission and would continue doing so. The company did not directly address questions about the contractor or the alleged failure to install the security patch.
The incident highlights the security risks government agencies can face when critical systems are operated or maintained by outside contractors.
For organizations handling sensitive employee information, delays in applying security updates can leave known vulnerabilities exposed to attackers.
Critical PeopleSoft Patch Was Issued
The FBI breach follows warnings issued earlier this year about attacks targeting organizations using Oracle PeopleSoft.
In June, Google warned about a ShinyHunters-linked hacking and extortion campaign targeting organizations that relied on PeopleSoft software. Oracle issued a security alert on the same day identifying a vulnerability in the platform and providing security fixes.
Both companies urged organizations using PeopleSoft to install Oracle’s critical security updates and alerts without delay.
Applying patches is considered a fundamental part of cybersecurity because software updates can close vulnerabilities that attackers may otherwise exploit. However, updating large enterprise systems can be complicated, particularly when they support critical operations and large numbers of users.
Reuters has not determined whether the FBI’s PeopleSoft system was patched before the intrusion or precisely when the recommended security update was applied.
ShinyHunters has claimed that a vulnerability in PeopleSoft helped facilitate its attack on the FBI’s job site.
Sensitive FBI Employee Data Exposed
The breach has raised particular concern because of the nature of the information that was reportedly exposed.
The stolen data included detailed descriptions of the counterintelligence roles held by named FBI employees, according to people familiar with the information. It also reportedly included street addresses associated with human intelligence operatives.
Medical and psychiatric records belonging to FBI personnel were also among the information that hackers claimed to have obtained.
The exposure of such information could create additional security concerns for employees whose work involves sensitive investigations and intelligence operations.
The FBI has continued investigating the incident while attempting to determine exactly what information was accessed and how broadly it may have been compromised.

Credits: Cybernews
ShinyHunters Investigation Continues
The investigation has also received a potential boost following the detention of a key ShinyHunters suspect in Jordan last week.
Reuters reported that sources familiar with the matter said the alleged hacker was cooperating with authorities. Information obtained through that cooperation could help investigators understand how the breach occurred and determine the extent of the stolen data.
For the FBI, the immediate priority remains containing any continuing risk while establishing the full scope of the incident.
The breach also underscores the importance of timely security updates, particularly for government systems holding highly sensitive information. As the investigation continues, the FBI will need to determine not only what data was accessed but also how a known software vulnerability remained exposed long enough to be exploited.
With the bureau relying on third-party technology and contractors for parts of its digital infrastructure, the incident is likely to put additional attention on how government agencies monitor, patch and secure systems managed by external organizations.




