‘Dozens’ of organizations had data stolen in Oracle-linked hacks

‘Dozens’ of organizations had data stolen in Oracle-linked hacks

Security experts from Google have uncovered a significant data breach involving hackers who are specifically targeting corporate executives with extortion emails. This alarming revelation indicates that data from numerous organizations has been compromised. In a statement released on Thursday, Google informed TechCrunch that the Clop extortion gang has exploited various security vulnerabilities in Oracle's E-Business Suite software, resulting in the theft of critical data from the affected entities. Oracle’s E-Business Suite is essential for businesses, as it manages operations such as customer data storage and human resources files. Google highlighted in a blog post that this hacking campaign has been active since at least July 10, well before the breaches were initially detected—pointing to a potentially widespread issue. Earlier this week, Oracle acknowledged that the hackers were still leveraging its software to access personal information of corporate executives and their organizations. Notably, Oracle’s chief security officer, Rob Duhart, had previously asserted that the extortion campaign was linked to vulnerabilities that the company had patched back in July, implying that the threat had been neutralized. However, a security advisory released over the weekend contradicted this assertion, revealing a zero-day vulnerability that could be exploited remotely without requiring a username and password. This oversight has raised concerns regarding the security of Oracle systems. The Clop ransomware group, which has ties to Russia, is notorious for its extensive hacking operations, often utilizing unknown vulnerabilities to extract vast amounts of corporate and customer data. Their methods have included targeting managed file transfer tools like Cleo Software, MOVEit, and GoAnywhere, which businesses rely on for secure data transmission. In light of these developments, Google’s blog post provides email addresses and technical information to help network defenders identify potential extortion emails and detect any signs of compromise in their Oracle systems.

Sources : TechCrunch

Published On : Oct 09, 2025, 17:35

AI
Meta Introduces Muse: A Game-Changing AI Image Generator

Meta has officially launched its latest innovation, Muse Image, an AI-driven image generator developed by the company's ...

TechCrunch | Jul 07, 2026, 22:45
Meta Introduces Muse: A Game-Changing AI Image Generator
AI
Revolutionizing Automation: Humanoid Robots Achieve Inspection Milestone in Record Time

AgiBot, a Chinese robotics firm, has reached a notable achievement in the realm of industrial automation. The company ha...

Business Today | Jul 08, 2026, 01:00
Revolutionizing Automation: Humanoid Robots Achieve Inspection Milestone in Record Time
Startups
Microsoft Unveils Generous Severance Package Amid Workforce Reductions

Microsoft has announced a substantial severance package for its laid-off employees in the United States, offering up to ...

Business Insider | Jul 07, 2026, 23:00
Microsoft Unveils Generous Severance Package Amid Workforce Reductions
Startups
Figma Expands Horizons with Acquisition of Bud Coding Team

In a strategic move to enhance its offerings, Figma has acquired the team behind Bud, an innovative coding and AI agent ...

TechCrunch | Jul 07, 2026, 18:45
Figma Expands Horizons with Acquisition of Bud Coding Team
AI
The Dual Landscape of AI: How Open Source Models Coexist with Frontier Labs

In a recent commentary, Decagon's CEO Jesse Zhang presented a bold perspective on the evolving dynamics of the AI market...

TechCrunch | Jul 07, 2026, 20:35
The Dual Landscape of AI: How Open Source Models Coexist with Frontier Labs
View All News