国际黑客组织ShinyHunters声称已入侵FBI系统,盗取了数千名特工的医疗检查数据1。被盗信息包括血液和尿液检测结果、医生笔记、全名、地址、电话号码、徽章号和职位信息等高度敏感内容1。黑客最初声称影响38000名员工,随后表示掌握约60000名现任和前任FBI员工的数据1。
黑客声称利用了Oracle云存储系统中的漏洞,获取了FBIJobs、FBI BEAST、FBI MedLink和FBI BICS等多个平台的访问权限1。与其他勒索事件不同,这次入侵中黑客要求FBI撤回五月份发布的一份公告,而非索要金钱,并威胁将在五天内公布完整数据集1。
FBI已承认遭遇入侵,表示正在调查是否直接遭遇黑客攻击或第三方供应商被破坏1。英国国家网络安全中心前主任Ciaran Martin评价此次事件"就数据泄露而言,严重程度堪称极端"1。
Hackers from the international group ShinyHunters claimed to have breached FBI systems on Monday and stolen sensitive medical examination data belonging to thousands of special agents 1. The stolen information includes blood and urine test results, doctor's notes, full names, addresses, phone numbers, badge numbers, and job titles 1. While initially claiming to have accessed data on approximately 38,000 employees, the hackers later asserted they possess information on roughly 60,000 current and former FBI staff members 1.
The hackers demanded that the FBI withdraw a public announcement issued in May, threatening to release the complete dataset within five days if the agency did not comply 1. The FBI acknowledged the breach in a statement and indicated it was actively investigating whether the agency itself was directly compromised or if a third-party vendor was targeted instead 1. According to the hackers' account, they exploited a vulnerability in Oracle cloud storage systems to gain access to multiple FBI platforms including FBIJobs, FBI BEAST, FBI MedLink, and FBI BICS 1. Ciaran Martin, former director of the UK National Cyber Security Centre, characterized the incident as reaching "extreme severity in terms of data breaches" 1.
评论
还没有评论,欢迎留下第一条。