The Federal Bureau of Investigation has removed a contractor from Accenture following a data breach orchestrated by the hacking group ShinyHunters. This breach exposed personal information of thousands of FBI employees. According to a Reuters report, the incident occurred because a security patch was not applied to a platform managed by a third-party organization. Brett Leatherman, assistant director of the FBI's cyber division, confirmed that the FBI has taken all necessary measures to mitigate further risks and protect its workforce.

While the FBI did not officially name the third-party organization, Reuters identified it as Oracle PeopleSoft. ShinyHunters reportedly exploited a vulnerability in this software to breach the FBI's job portal. A report from Mandiant, a Google-owned company, detailed how ShinyHunters bypassed security measures designed to protect a specific endpoint by using a URL-encoding trick.

The FBI is continuing its investigation into the breach. They have already arrested two members of ShinyHunters and are working with partners to pursue further leads. More arrests are expected as the investigation progresses. Despite the incident, Accenture remains committed to supporting the FBI's mission. The agency is actively coordinating with other entities to close any security gaps exposed by this breach.