148932 stories
·
0 followers

Top Trump FBI Chief Quits After Katie Miller Meltdown

1 Share

ANOTHER ONE BITES THE DUST

The departure is the latest shakeup during the tumultuous tenure of FBI director Kash Patel.

Andrew Bailey, Katie Miller photo illustrationi

Photo Illustration by Eric Faison/The Daily Beast/Getty

Donald Trump has lost another senior official, with the FBI’s deputy director leaving days after two veteran counterterrorism chiefs were abruptly reassigned over their handling of an investigation involving Stephen Miller’s wife.

FBI Deputy Director Andrew Bailey announced on Monday that he was stepping down to return to his family in Missouri, just one year after taking on the job as the bureau’s second highest ranking official following the departure of MAGA podcaster Dan Bongino.

Read the whole story
Michael_Novakhov
13 minutes ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete

Embarrassing Breach at F.B.I. Fuels Fears of Harm to Its Employees

1 Share

Advertisement

SKIP ADVERTISEMENT

In an internal memo, the F.B.I. said it believed the hackers may have stolen sensitive information on all of its employees.

A criminal hacking group known as ShinyHunters said it had targeted the F.B.I. as retribution for its public warning in the spring that the group was known to harass its victims and their family members.Credit...Tierney L. Cross/The New York Times

The theft by a criminal hacking group of reams of sensitive personal data involving potentially tens of thousands of former and current F.B.I. employees is emerging as one of the worst breaches of sensitive government information, leaving the bureau rushing to protect its personnel as an uncertain deadline loomed.

Nearly a week after the group, known as ShinyHunters, revealed it had pilfered intimate details about bureau personnel from the agency’s jobs portal and threatened to leak them online, F.B.I. investigators are still piecing together how the breach took place and the total damage.

The hack appears to have swept up home addresses, Social Security numbers, secretive job assignments and much more, according to a New York Times analysis of some of the records. Some are already comparing it to China’s breach of more than 20 million records from the Office of Personnel Management over a decade ago, considered so catastrophic that officials and lawmakers vowed to never let something like it happen again.

Many F.B.I. employees first learned about the hack when news reports about it surfaced on Tuesday, according to current and former officials. The next day, F.B.I. staff received an email reminding them that October is cybersecurity awareness month, which struck some as tone deaf in light of the breach, one of those people said.

On Friday, bureau leaders, in an internal memo to its rank and file, declared the hack a cybersecurity incident and acknowledged its employees had personal information stolen.

“We are operating under the premise that the threat actor is also exfiltrating PII of all F.B.I. employees,” according to the memo, which was described by someone who had seen it, using the abbreviation for personally identifiable information.

The memo said the agency would offer virtual briefings in the weeks ahead and instructed employees to remain vigilant at home and at work, report any unsolicited contacts or threats, avoid answering calls from unknown numbers and set up voice mail accounts with A.I.-generated voices. “Bureau leadership remains committed to supporting the safety of you and your family,” it said.

Still, many past and present personnel remain in the dark about whether their data has been purloined. In recent days, some have anxiously asked Times reporters whether their names are contained in the hacked data, wondering whether they needed to take steps to protect themselves or their families.

In a statement on Monday, the agency said it was “working around the clock to investigate the cyber incident involving FBIJobs.gov and is in regular communication with anyone who may be impacted — including multiple bureau-wide communications within 24 hours of public reporting.”

It added, “The F.B.I. treats the security of its information and the safety of its work force as top priorities, and our investigation is ongoing.”

In announcing its hack, ShinyHunters, believed to be a loose collective of young hackers operating across the globe, said it had targeted the F.B.I. as retribution for a public advisory the bureau had issued in the spring, warning that the group was known to harass victims and family members with threatening or coercive maneuvers. In their note, the hackers demanded that the F.B.I. “correct or simply REMOVE” the advisory or risk further consequences.

In an email to The Times on Friday, ShinyHunters said that the bureau had until the end of Tuesday to fulfill its request, even as the hackers themselves appeared to acknowledge that the bureau was unlikely to acquiesce.

That note left open the possibility that the hackers would not dump the data online, even as the group reiterated its deadline. But on Monday, in a new statement, the group claimed it never intended to do so.

“Since the very beginning we had made our decision that we would never publish this data,” the group said. “We have never intended to nor have we ever planned to.” It added that the hack and threat to the F.B.I. was a “marketing campaign to protect our business” and said that “we are not taking any further actions” with the data, including revealing more about what is contained in the files.

“We seek no escalation as our goals have widely been accomplished,” it said.

It remains to be seen what ShinyHunters will do, and security researchers warned that even if they did not publish it online they could still sell it to other criminals or foreign governments.

It is also unclear just how much sensitive information the hackers stole. The group claimed publicly to have stolen records on everyone who has applied for a job at the F.B.I., and told The Times that the people with compromised information numbered in the tens of thousands.

Ciaran Martin, the former head of Britain’s cyberdefense agency, said the F.B.I. hack likely had “huge impact on the operational capability” of the bureau and could rank as one of the most consequential data breaches in history — graver even than the Office of Personnel Management burglary.

“Losing the data on 20 million federal employees to the Chinese was bad,” Mr. Martin said. “But you knew the Chinese weren’t going to sell or publish it.”

Image

T.S.A. PreCheck numbers that are provided to F.B.I. employees were among the private personal data obtained by the hackers.Credit...Jamie Kelter Davis for The New York Times

A sample of records that the hackers have shared with The Times and other news organizations includes newer hires as well as retired ones, with birth dates ranging from the early 1940s to the mid 2000s. The most recent date references in the spreadsheet were from late April, suggesting the stolen files are at most only months old.

Current and former U.S. officials said that at least portions of the sample, and potentially all of it, appeared to be authentic.

Sign up for the On Politics newsletter.  It's a pivotal moment for American politics. Join us for 2026 and beyond.

A Times review of the sample found that it contained a range of private personal data, including:

  • The names, home addresses, phone numbers, work emails, Social Security numbers and birth dates and hire dates of current and former F.B.I. personnel.

  • Names and numbers for spouses and other emergency contacts, including in some cases parents, siblings and even children.

  • Employee identification numbers that are used for the Transportation Security Administration’s PreCheck program, which could aid spies in tracking travel itineraries of agents, including those that work undercover.

  • Names of the units in which F.B.I. personnel are employed and their job titles, as well as the names of supervisors. While some list mundane departments, others reveal extraordinarily sensitive assignments including counterintelligence, narcotics and various desks focused on Russian, Chinese and Iranian national security threats. F.B.I. agents in those roles are generally expected to zealously protect their work in such fields to avoid putting a target on their back.

Additionally, ShinyHunters said that it had stolen medical data about employees, including psychiatric records and documents related to blood and urine tests. It also said that it had additional background check files on employees.

Former bureau officials and security experts said the hacked data prompted no end of worries. The data could also make it far easier for violent criminals to seek revenge against F.B.I. agents who sent them to prison. When they submit paperwork against criminal suspects, F.B.I. agents sign their names to the records but are typically trained to not let delicate personal information easily emerge online.

“It doesn’t take much imagination to picture scenarios where employees or their families could be threatened or harmed by this kind of information being released,” said Andrew Brandt, a threat intelligence researcher at the cybersecurity company Huntress. “The bigger worry is ShinyHunters selling the data to other criminal or nation-state groups who could put it to more damaging use, rather than dumping it themselves.”

Security experts said that given the breadth of the records, they would be of enormous value if they were acquired by foreign spies, who could then use the material to build elaborate dossiers on F.B.I. agents — including those who may be undercover or later assigned to such a post — and track them for years, if not decades. Aided by artificial intelligence, spies or hackers could also combine the information with other exposed data that is already in their hands or that is easily acquired on the dark web.

“Breaches do not exist in a vacuum,” Justin Sherman, a senior associate at the Center for Strategic & International Studies, wrote in a recent essay arguing that different exposed data sets can be combined and analyzed by hostile spy services.

The hack is just the latest in a string of embarrassing security failures for the F.B.I.

Two years ago, government investigators learned that Chinese spies had compromised vast segments of the nation’s telecommunications infrastructure in a hacking campaign known as Salt Typhoon. Among the most startling revelations was that the breach included sensitive wiretap networks at Verizon and AT&T that process court-authorized surveillance orders for the F.B.I. to monitor domestic criminal suspects.

China has denied involvement, but U.S. intelligence officials considered the compromise a counterintelligence failure of the highest magnitude, with national security implications that could last for years. It prompted such alarm within the F.B.I. that field offices were told to check if informants had been potentially compromised and, if necessary, take steps to ensure their safety.

The bureau still does not understand the full scale or scope of Salt Typhoon and its exposure from it, according to current and former U.S. officials. But the F.B.I. received another blow this spring when suspected Chinese hackers were found again inside a network it maintains for domestic surveillance orders.

In the case of ShinyHunters, it was not Chinese spies but a notorious gang of cybercriminals who hit the F.B.I. Already, bureau leadership had warned staff that hackers linked to ShinyHunters who infiltrated AT&T in 2024 may have stolen months of call and text logs belonging to some of its agents, which also fanned concerns about whether its informants had been exposed, as Bloomberg reported last year.

The members of ShinyHunters are seen as highly skilled — and audacious — English-speaking hackers who extort their victims for millions of dollars and brag about their exploits. In their recent correspondence with The Times, the hackers have favored British spellings of certain words.

A French citizen charged with participating in some ShinyHunters attacks was arrested in Morocco in 2022, extradited to the United States and sentenced to three years in prison. Other suspected members were arrested last year in France.

On Monday, a security journalist, Brian Krebs, reported that authorities in the Netherlands had arrested a 23-year-old convicted cybercriminal on suspicion of aiding in data thefts and extortions tied to ShinyHunters just days before the F.B.I. breach. ShinyHunters said in response on Monday that the Dutch suspect “has no association with us.”

The F.B.I.’s Dallas field office has been leading an investigation into ShinyHunters and working with international partners to hunt down other members, according to people familiar with the matter who were not authorized to speak publicly.

It is not clear exactly how ShinyHunters pulled off the F.B.I. hack. The group said it had used a zero-day, or previously undiscovered, coding flaw within the Oracle PeopleSoft software, an application that companies use for human resources and financial management.

But some security researchers said the story may be more complicated. On Friday, Google revealed in a blog post that its threat intelligence teams have recently seen ShinyHunters renewing a campaign of “mass exploitation” against victims using a bug with Oracle PeopleSoft that was publicly disclosed with a patch in June. The post does not mention the F.B.I. breach, but a person familiar with the matter said investigators believe the known bug was involved in the ShinyHunters theft of personnel files.

The flaw was considered important enough that the Cybersecurity and Infrastructure Security Agency promptly added it to a catalog of high-risk known vulnerabilities that federal agencies are instructed to quickly address.

“This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise,” CISA said at the time.

In response to questions from The Times, ShinyHunters said in an email on Friday that the F.B.I. had not contacted the group and that it would hold firm to its Tuesday deadline.

The hackers said that the severity of the breach was “SIGNIFICANTLY” worse than publicly known but did not explain in what way. Cybersecurity researchers who have followed the collective have said it has a track record of sometimes embellishing its activities but so far, in this breach, its claims have been largely corroborated.

“We have no intention to reveal the true impact, we will leave that to the F.B.I.,” ShinyHunters said. “If they lie, we will not correct them.”

The group also said that it was aggrieved by the F.B.I.’s advisory and that the hack was “all about protecting our business.”

“This is happening so we are heard and acknowledged,” ShinyHunters said. “We may sound like children whose feelings are hurt, sure, but in our game, reputation is all that matters.”

Dustin Volz writes about cybersecurity and intelligence for The Times. He is based in Washington.

Alan Feuer is a reporter for The Times who covers the effects President Trump has had on the courts, the Justice Department and the broader rule of law.

Charlie Savage writes about national security and legal policy for The Times.

Adam Goldman is a London-based reporter for The Times who writes about global security.

Related Content

Advertisement

SKIP ADVERTISEMENT

Read the whole story
Michael_Novakhov
1 hour ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete

Andrew Bailey, No. 2 at FBI, resigns in latest shake-up at bureau

1 Share

The conservative firebrand whom the Trump administration installed as a No. 2 at the FBI announced Monday that he is resigning from the bureau.

Andrew Bailey, the former Missouri attorney general who has supported debunked claims that the 2020 election was stolen, told bureau employees in an email that he was leaving to spend more time with this family, according to three people familiar with the personnel move who spoke on the condition of anonymity to discuss a matter they were not authorized to speak about.

Bailey, who was hired into the leadership role about a year ago, confirmed his departure in a social media post.

“With great pride in what we have accomplished, I am announcing that I am stepping down to return to my family in Missouri,” Bailey wrote on social media. “I am confident Director Patel will continue to reform the FBI, combat violent crime, defend the homeland, ensure strong organizational accountability, and restore public trust in this institution of excellence.”

The departure marks a dramatic turn for Bailey, a loyalist of President Donald Trump who had been floated as a candidate early in the administration to run the FBI or Justice Department.

It is also the latest shake-up at the federal law enforcement agency under FBI Director Kash Patel. Bailey was hired to serve as the co-deputy director alongside Dan Bongino, a conservative podcast host and former Secret Service officer.

Neither Bongino nor Bailey had FBI experience, which made them highly unusual picks for a position that typically goes to a veteran of the bureau. The position does not require Senate confirmation and is tasked with running the day-to-day operations of the FBI.

Earlier this year, Bongino quit amid frustrations about the demands of the position, The Washington Post previously reported. He was replaced with Christopher Raia, a career FBI official.

During Bailey’s tenure, the department has seen an unprecedented wave of dismissals and transfers of experienced FBI agents.

Last week, for example, the top two agents running the counterterrorism division in the Washington field office were transferred because of their work investigating threats against Katie Miller — a conservative podcaster who is the wife of top Trump aide Stephen Miller — according to three people familiar with the matter.

The officials were transferred because top officials felt work on the probe was moving too slowly, said the people, who spoke on the condition of anonymity to discuss a personnel matter.

Bailey resigned from his position as Missouri attorney general last September to assume the role as FBI co-deputy director.

He is a military veteran who as Missouri’s chief legal officer mounted high-profile legal fights aligned with Trump’s agenda. He sued Starbucks over its diversity, equity and inclusion policies; fought transgender care policies; and waged legal battles against “sanctuary city” policies.

Among the most notable parts of Bailey’s short FBI tenure was his presence on the scene as the FBI executed search warrants in January to seize 2020 ballots and other election material from Fulton County, Georgia.

It is rare for an FBI deputy director to personally oversee such a routine development in an investigation, but Bailey’s presence was also notable given the political tensions surrounding the probe and Trump’s repeated insistence, without evidence, that the 2020 election was stolen. The FBI has said it is investigating whether what it has described in court filings as “deficiencies” in the 2020 vote tabulation in Fulton County, home to Atlanta, were the result of intentional wrongdoing that could constitute a crime.

Read the whole story
Michael_Novakhov
10 hours ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete

Did the demoted FBI agents Michael Burgwald and Courtland Rae provide the "human element" for the ShinyHunters hack, in some ways?

1 Share

Did the demoted FBI agents Michael Burgwald and Courtland Rae provide the "human element" for the ShinyHunters hack, in some ways?

AI Mode reply for Did the demoted FBI agents Michael Burgwald and Courtland Rae provide the "human element" for the ShinyHunters hack, in some ways?

. The two events occurred independently and involved entirely separate aspects of the Bureau's operations:

  • The ShinyHunters Hack: In September 2026, the cybercriminal group ShinyHunters claimed responsibility for a massive data breach targeting FBIjobs.gov. Instead of relying on a "human element" or insider assistance, the group reported that they exploited a zero-day remote arbitrary code execution vulnerability in Oracle PeopleSoft human resources software to gain lateral access to the bureau's systems.
  • The Demotions of Burgwald and Rae: Michael Burgwald and Courtland Rae, who led the counterterrorism division at the FBI's Washington Field Office, were demoted and reassigned to bureau headquarters in late September 2026. Their demotions were entirely political and operational, stemming from internal friction over their decision not to pursue a full counterterrorism investigation into harassing phone calls made to Katie Miller, the wife of White House Deputy Chief of Staff Stephen Miller.

Because the hack relied strictly on a software exploit and the agents were reassigned over an unrelated domestic threat assessment, any overlap between the two stories is purely coincidental.

Would you like more details on the Oracle vulnerability used in the hack, or more context surrounding the reassignments at the Washington Field Office?

Copied to clipboardFailed to copy to clipboard. Try again later.

  • FBI leaders demoted after declining to investigate calls to ...

    Sep 27, 2026 — Burgwald was ousted after his office was asked to investigate alleged harassing phone calls made to Katie Miller.

  • Two veteran FBI counterterrorism leaders demoted after ...

    Michael Burgwald, and his deputy, Courtland Rae, were both demoted and sent to bureau headquarters Friday, sources told Bloomberg ...

  • Two senior FBI counterterrorism officials demoted after ... - KTUL

    Sep 28, 2026 — They were not fired, but their reassignment removes experienced counterterrorism leaders from the office.

Read the whole story
Michael_Novakhov
13 hours ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete

“Very serious threats”: FBI officials demoted after Katie Miller theats probe

1 Share

Two veteran FBI counterterrorism officials were demoted after investigators determined allegedly harassing calls to a top White House aide's wife did not warrant further investigation, according to multiple reports.

Michael Burgwald, who led counterterrorism operations at the FBI's Washington Field Office, and his deputy, Courtland Rae, were removed from their leadership positions Friday and reassigned to FBI headquarters.

The shakeup followed an investigation into allegedly threatening and harassing calls received by Katie Miller, a conservative podcaster married to White House Deputy Chief of Staff Stephen Miller.

A field office team reviewed the calls but found they did not meet the threshold for an FBI investigation and identified no connection to terrorism, CNN reported, citing people familiar with the matter.

That conclusion reportedly caused friction with FBI leadership.

Bloomberg Law, which first reported the demotions, said Washington Field Office leadership was dissatisfied with the pace of the investigation and that the Miller family shared those frustrations. FBI Director Kash Patel was also displeased with the office's progress, according to the outlet.

The FBI and White House have pushed back on suggestions that the Millers or Patel ordered the personnel changes.

Washington Field Office chief Darren Cox said he made the decision himself.

"Director Patel did not order this decision," Cox said. "This was a personnel decision made at the Washington field office level alone based on our constant evaluation of mission needs."

White House spokesperson Lauren Bis said the Millers had never met or interacted with Burgwald or Rae.

"Senior leadership at the FBI determined they were stifling investigations into very serious threats and made a unilateral decision to remove them," Bis said.

Details about the calls themselves have not been made public, leaving unclear what investigators reviewed or why they concluded the messages did not warrant further FBI action.

Start your day with essential news from Salon.
Sign up for our free morning newsletter, Crash Course.

The reassignments also remove decades of counterterrorism experience from the Washington office as the United States remains at war with Iran.

Burgwald is a West Point graduate who has received multiple attorney general's awards. Rae helped oversee the FBI's response to the 2013 Boston Marathon bombing. Both officials also worked on investigations related to the Jan. 6, 2021, attack on the Capitol.

The Millers and their children moved from their Virginia home into military housing last year amid what the White House has described as a campaign of stalking, doxing and threats against the family.

The post "Very serious threats": FBI officials demoted after Katie Miller theats probe appeared first on Salon.com.

Read the whole story
Michael_Novakhov
14 hours ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete

What was the specific content of threats to Kathie Miller?

1 Share

AI Mode Conversation: What was the specific content of threats to Kathie Miller?

What was the specific content of threats to Kathie Miller?

AI Mode reply for What was the specific content of threats to Kathie Miller?

The specific content of the threats targeting prominent conservative podcaster Katie Miller (wife of White House Deputy Chief of Staff Stephen Miller) has been described generally as harassing and threatening phone calls.

Publicly available details regarding the exact wording or specific nature of the statements left in the messages are highly limited because:

  • Initial FBI Assessment: A team at the FBI's Washington Field Office reviewed the phone messages and determined they consisted of "harassing phone calls" that did not meet the threshold for a formal federal investigation or show any connection to terrorism.
  • Broader Targeting: According to White House statements, the phone calls are part of a broader pattern of escalation that includes alleged stalking, online doxxing (the sharing of personal information), and threats targeting their Virginia home, which eventually forced the family to relocate to military housing.

Note: While the public reports do not quote the exact content of the voicemails, the perceived severity of the situation—and internal friction over how quickly the bureau was investigating the calls—led to the demotion and reassignment of two veteran FBI counterterrorism officials.

AI can make mistakes, so double-check responses

Copied to clipboardFailed to copy to clipboard. Try again later.

  • Two senior FBI counterterrorism officials demoted after handling threats to Katie Miller

    Sep 27, 2026 — Two senior FBI officials in Washington were demoted and reassigned to FBI headquarters Friday after concerns that the agency was n...

  • FBI Ousts Officials Probing Threats to Stephen Miller's Wife (2)

    Sep 26, 2026 — Two FBI counterterrorism leaders were transferred due to dissatisfaction ・ probing allegedly harassing phone messages ・ avoid reta...

  • Two senior FBI counterterrorism officials demoted after handling ...

    Sep 27, 2026 — Two senior FBI officials in Washington were demoted and reassigned to FBI headquarters Friday after concerns that the agency was n...

Read the whole story
Michael_Novakhov
14 hours ago
reply
http://michael_novakhov.newsblur.com/
Share this story
Delete
Next Page of Stories