The website used by the ShinyHunters cyber extortion group has suddenly gone offline, just one day after a deadline it gave the FBI to change or remove a public warning about the hackers expired.
The site became inaccessible on September 30, adding another development to an escalating confrontation between ShinyHunters and US law enforcement. The cause of the outage remains unknown, and there is currently no confirmation that authorities seized or disabled the infrastructure.
ShinyHunters began its latest dispute with the FBI after claiming on September 22 that it had compromised FBIJobs.gov and obtained extensive information belonging to current and former bureau personnel and people who had applied for FBI positions. The group claimed the stolen material totaled between two and three terabytes, although the FBI has not publicly confirmed that figure.
Samples examined by journalists contained highly sensitive information. The exposed records included personal details such as names, addresses, telephone numbers, and Social Security numbers, along with information about some employees’ intelligence assignments. Separate files reviewed during the investigation also contained psychiatric and medical information.
The FBI has acknowledged unauthorized activity affecting FBIJobs.gov and is investigating the incident. An internal bureau memo reportedly instructed personnel to operate under the assumption that their information had been compromised, reflecting the potentially broad scope of the breach.
ShinyHunters said it targeted the FBI because of an advisory published by the bureau in May. The hackers disputed parts of the government’s description of their tactics and demanded that the FBI correct or remove the document within one week.
That deadline expired on September 29 without the FBI removing the advisory. ShinyHunters later softened its position, saying it had never intended to publish the stolen FBI information and describing the ultimatum as a publicity campaign rather than a threat to release the data.
The group’s website disappeared the following day. The timing immediately raised questions about whether the outage was connected to law enforcement activity, but no evidence has emerged proving such a connection.
The FBI declined to say whether it had taken action against the website. ShinyHunters could not be reached after the site went offline, leaving open the possibility that the disappearance was voluntary, caused by a technical problem or resulted from an undisclosed operation.
The outage also follows the arrest of a 24-year-old Amsterdam man in a Dutch investigation into ShinyHunters. Dutch authorities arrested the suspect on September 15, before the group publicly announced the FBIJobs.gov breach.
The FBI has described the arrested man as one of ShinyHunters’ alleged leaders. According to the bureau, the suspect and his alleged co-conspirators have breached more than 140 organizations since last year and collected at least $70 million through extortion.
ShinyHunters has denied that the Dutch suspect belongs to its current operation. Dutch investigators are examining evidence seized during the arrest, while the FBI says international partners are pursuing additional leads generated by the case.
The FBI also delivered a public warning to other alleged members of the group shortly before the ShinyHunters site disappeared. Cyber Division Assistant Director Brett Leatherman urged them to contact investigators, pointing to arrests and seized infrastructure as potential sources of information about remaining participants.
For now, the disappearance of the ShinyHunters website remains unexplained. The FBI’s disputed advisory is still online, and the group says it does not intend to publish the FBI data. Neither law enforcement nor ShinyHunters has confirmed what caused the cybercrime group’s online infrastructure to go dark.
