Dutch Police Arrest Former Hacker in ShinyHunters Investigation

· Original article ↗

Summary

Dutch police confirmed the arrest of a 24-year-old in the ShinyHunters investigation as the group claimed responsibility for an FBI job-site breach affecting more than 5,000 officials and exploited a PeopleSoft vulnerability against dozens of organizations.

Key points

  • Dutch police confirmed the arrest of a 24-year-old in connection with the ShinyHunters investigation; sources identified him as Pepijn van der Stap, previously convicted of data theft and extortion.
  • Dutch authorities are investigating whether the arrested man was the Dutch-speaking caller who reportedly used a spoofed login page to access Odido and steal data on more than 6.2 million people.
  • The FBI confirmed a breach of its job application site. Media reports said stolen data included personal information on more than 5,000 officials, including sensitive medical and psychiatric files.
  • ShinyHunters said it exploited the PeopleSoft vulnerability CVE-2026-35273, reportedly using it as a zero-day from June. Oracle issued a fix, but attackers reportedly bypassed Mandiant's suggested WAF rules using URL encoding.
  • Mandiant and Google Threat Intelligence Group reported mass exploitation of the vulnerability across dozens of systems in sectors including government, healthcare, technology and higher education.
  • Sources described a power struggle over the ShinyHunters brand and attributed the group's recent escalation to a teenage cybercriminal known as Rey; these claims are not independently confirmed in the article.

Article Details

Event Type
Arrest in a cybercrime investigation, alongside reported data breaches and extortion
Impact
ShinyHunters stole data on more than 6.2 million people in the Odido intrusion. The FBI confirmed a breach of its job application site; reporting described stolen personal, medical, and psychiatric information concerning more than 5,000 officials. Mandiant and GTIG confirmed that ShinyHunters exploited the PeopleSoft vulnerability to steal data from dozens of systems.

MITRE ATT&CK

CVE

Threat Actors

Vendors

Products

Countries

Industries

Related Articles