The Jerusalem PostTrump envoy meets Sudanese military chief in Egypt in attempt to end devastating warESPN DeportesRays arma rally y pone contra la pared a Yankees en SDLAESPN'Phenomenal' Penix continues winning ways with resurgent FalconsInquirerITCZ brings rain to Visayas, Mindanao, Palawan — Pagasa한겨레쿠팡 배송대리점, 노조 교섭위원 ‘물량 전면배제’ 논란ZDF heuteEntdecken Sie das ZDF-NachrichtenstudioCNN TürkMİTHAT BÜLENT ÖZMEN KİMDİR, TUTUKLANDI MI? Eyüpsultan Belediyesi Hangi Parti? Eyüpsultan Belediye Başkanı Hangi Partiden?Observador DesportoMontenegro discursa no Parlamento EuropeuSözcüKöylülerin 100 yıllık topraklarına böyle çöktülerWirtualna PolskaPolskie urzędy uznały ponad 500 małżeństw jednopłciowych. Podają daneRTL BoulevardMika uit Love is Blind springt in de bres voor Jurriaan: 'We maken allemaal fouten'Soompi6 C-Dramas To Cozy Up With This Fall
The Daily Newsstand · Free, Always
Tuesday, October 6, 2026

Accenture contractor removed from FBI following damaging data breach, sources say

Translate

Accenture contractor removed from FBI following damaging data breach, sources say

FBI. US flags flutter in the wind over the entrance to the J. Edgar Hoover Building in Washington, D.C., USA, May 16, 2025.

Kevin Lamarque/Reuters

The breach triggers concern across the FBI and the wider intelligence community

AT A GLANCE

  • The FBI removed an Accenture contractor due to their failure to properly update a system, leading to a data breach that exposed sensitive information of thousands of employees.
  • The breach was linked to Oracle's PeopleSoft platform, which was exploited by the hacking group ShinyHunters, raising concerns about operational security within the FBI.
  • The incident has prompted scrutiny over the security practices of third-party organizations and the importance of timely software patching to prevent such vulnerabilities.

This is AI-generated. Read the article for full context. Report any errors.

WASHINGTON, USA – The Federal Bureau of Investigation removed an Accenture contractor on Monday, October 5, over their role in a damaging data breach that exposed sensitive personal details of thousands of bureau employees, two sources familiar with the matter told Reuters.

The development comes as the FBI is still trying to ascertain the ramifications of the breach, which some former bureau officials have described as a major blow to the organization’s operational security.

In a statement to Reuters, a senior FBI official confirmed that an unidentified contractor had failed to properly update — or patch — the system they were responsible for.

“To date, our review has determined that the incident occurred as the result of a security failure of a platform managed by a third-party organization — after a contractor failed to implement a security patch explicitly issued to secure the platform,” FBI cyber chief Brett Leatherman said in the statement. “As such, the FBI has removed the contractor and taken all necessary steps to both mitigate any further risk and protect our workforce.”

The FBI did not identify the platform or third-party organization, but the two sources familiar with the matter said the platform was Oracle’s PeopleSoft, a human resources platform that the hacking group ShinyHunters said it exploited to break into the FBI’s job site last month.

Oracle did not immediately reply to a request for comment.

The sources also said the third-party organization was Accenture. Reuters could not immediately identify the specific contractor or determine their current employment status.

In a statement, Accenture said it was “proud to support the mission of the FBI and will continue to do so.” It did not answer questions about the contractor or their alleged failure to patch.

Critical patches

In June, Google raised the alarm over a ShinyHunters-linked hack-and-extort campaign aimed at organizations using PeopleSoft ‌software. The same day, Oracle issued a security alert identifying a weakness in PeopleSoft and offering security fixes.

Both companies urged organizations running PeopleSoft to “apply all Critical Patch Updates, Critical Security Patch Updates and Security Alerts without delay.”

Swift patching of vulnerable software is considered a key part of defending networks and devices against hackers, but the process can be laborious and difficult, particularly with enterprise software that serves large numbers of people.

Reuters has not been able to determine whether or when those responsible for securing the FBI’s job site followed those recommendations, but ShinyHunters credited a vulnerability in PeopleSoft for facilitating its intrusion.

The breach has triggered concern across the FBI and the wider intelligence community, exposing sensitive personal information, including granular descriptions of named employees’ counterintelligence jobs, street addresses of human intelligence operatives, and medical and psychiatric records of bureau workers.

Last week, a key ShinyHunters suspect was detained in Jordan, Reuters reported. Sources told Reuters the alleged hacker was cooperating, a development that may help the bureau limit — or at the very least understand — the scope of the damage.

View the original on Rappler →

KioskNews shows a cleaned-up reading view extracted from the publisher’s page — the original always lives on their site, not ours.