The FBI says it has arrested multiple suspects tied to the hacking campaign that boasted of stealing FBI employee and applicant data. This is the latest turn in a case that began with a defaced jobs site and a brash online claim: “We hacked the FBI.” Now, after arrests in Europe and a detention in Jordan, federal agents and foreign partners say they are closing in on the people behind the screens.
What the FBI confirmed
The bureau told reporters it is “aggressively” investigating the incident and has worked with partners to arrest multiple subjects. An FBI spokesperson warned the agency will “spare no resource” to bring those responsible to justice. Assistant Director Brett Leatherman even posted a message aimed at remaining members of the group, saying arrests and seized servers tend to make people talk — a polite way to say the pressure is on.
Why this matters — the scope and danger
The hack started with the FBI jobs portal being defaced, but the group claimed to hold more than a website. Samples of alleged records were circulated, and journalists who reviewed the files say they contained names, addresses, phone numbers and other personal details. If the files are real, that is more than an embarrassment — it is a risk to real people. Stealing or publishing that kind of data can put agents, applicants and their families in danger.
Who’s been detained and who is talking
Law-enforcement sources say a suspect known online as “Rey” was detained in Jordan and is cooperating with U.S. investigators. Journalists and security researchers have previously linked that handle to a man named Saif al‑Din Khader. Dutch police also arrested a 24‑year‑old who the FBI described as “one of the alleged leaders” of the group; reporters have named him as Pepijn van der Stap. The arrests appear to be yielding information and may point to more detentions, infrastructure seizures, and charges to come.
International teamwork — and the lesson for Washington
Here’s the odd truth: threats that can topple factories or expose federal employees don’t care about borders. The good news is investigators in the Netherlands, Jordan and the U.S. are working together. The bad news is this should not surprise anyone — and we should stop pretending that soft sentences or easy re-entry into tech jobs solve the problem. If people who broke the law can return to sensitive roles with little oversight, our systems and citizens pay the price. Congress and agency leaders need to fund tough, smart cyber defenses and stop acting shocked when criminals exploit their gaps.
What comes next
The next steps are predictable: forensic teams will try to prove the full scope of the breach, prosecutors will weigh charges, and more names may surface as detained suspects cooperate. For now, officials deserve credit for moving across borders to get suspects off the street. But don’t hold your breath waiting for a full cleaning of the problem. Cybercriminals evolve fast. If Washington wants to stop the next attack, it must match that speed with funding, prosecutions, and common‑sense rules about who gets to call themselves a “security researcher” while allegedly running ransom schemes on the side.

