# Mandiant

Type: Company

Source: HR & Workforce Intelligence Brief — https://gethrbrief.com/entity/mandiant
Canonical HTML page: https://gethrbrief.com/entity/mandiant

## Timeline

- **2026-09-25**: Mandiant publishes expanded attack report — Google's Mandiant released a threat intelligence report warning that ShinyHunters had renewed mass exploitation of the PeopleSoft flaw and skirted earlier defenses.
- **2026-09-23**: FBI says it is aggressively investigating — The FBI issued a statement saying it was aggressively investigating ShinyHunters' reported breach of personnel data.
- **2026-06-09**: Initial attack window ends — The May-June campaign concluded after primarily targeting universities.
- **2026-05-27**: Initial PeopleSoft exploitation begins — ShinyHunters exploited a vulnerability in Oracle's PeopleSoft software, with the first campaign lasting through June 9 and mainly affecting universities.

## Recent coverage (1 stories)

### PeopleSoft HR systems hit in ShinyHunters expansion to dozens of firms
2026-09-28 00:22:06 · Sentiment: Negative · Impact: 7/10 · Sources: 4

ShinyHunters has renewed mass exploitation of an Oracle PeopleSoft flaw, hitting dozens of HR systems across multiple sectors after bypassing firewall defenses. HR leaders face exposure of employee records, including medical and psychiatric data, and must verify Oracle's patch immediately. The FBI is investigating the group's claim that it stole personnel data through the same vulnerability.
Full story: https://gethrbrief.com/story/peoplesoft-hr-shinyhunters-expansion-dozens-firms

---
This page is a machine-readable summary. Sentiment measures the directional read of each development for this entity, not the tone of the reporting; impact weights consequence, not syndication reach. See https://gethrbrief.com/guides/methodology for the full editorial methodology.