Overview
- The FBI removed an Accenture contractor over the incident, a move sources say followed a review that tied the breach to a contractor's failure to implement an issued security patch on a third‑party system.
- FBI cyber chief Brett Leatherman said the agency's review found the incident began with a security failure on a platform managed by a third party after a patch was not applied, and the bureau says it has taken steps to mitigate further risk.
- Reporting and sources identify the affected platform as Oracle PeopleSoft and name Accenture as the vendor managing it, though the specific contractor has not been publicly identified.
- Journalists who reviewed samples provided by the hacking group ShinyHunters say the stolen files appear to include Social Security numbers, addresses, medical records and detailed notes about counterintelligence roles, creating personal‑safety and operational risks for affected employees.
- Investigations and forensic work are ongoing to confirm the full trove, the breach's origin and any broader operational impact, while Accenture expressed support for the FBI and Oracle did not immediately comment.