Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Clop cybercriminals found leveraging an Oracle zero-day vulnerability to obtain private information of company executives

Clop cybercriminals found leveraging an Oracle zero-day vulnerability to obtain private information of company executives

Bitget-RWA2025/10/06 19:03
By:Bitget-RWA

Oracle has addressed a zero-day flaw in one of its leading enterprise software solutions, which a cybercriminal group has been exploiting to obtain confidential details about business executives. 

In a short update posted over the weekend, Oracle’s chief security officer Rob Duhart announced that the company had issued a fresh security patch for its Oracle E-Business Suite and strongly recommended that users apply the update without delay.  

According to the security notice, the vulnerability—cataloged as CVE-2025-61882—can be “abused remotely without requiring authentication.” The advisory included several indicators of compromise to assist Oracle clients in detecting signs of unauthorized access, indicating that attackers are actively leveraging the flaw to extract sensitive information. 

Oracle reports that its E-Business Suite is used by thousands of companies worldwide to manage operations, including storing customer records and employee HR data. 

This vulnerability is classified as a zero-day because Oracle had no opportunity to address it before it was exploited by malicious actors. 

Duhart’s revised statement marks a shift from earlier in the week, when a previous version noted Oracle was aware that some executives “have received extortion emails” related to vulnerabilities fixed in July, implying the extortion activity had ended. The discovery of this new zero-day flaw indicates that attackers continued to take advantage of previously unknown weaknesses in Oracle’s E-Business software. 

Reports about the extortion scheme targeting business leaders surfaced last week.  

On October 2, Google’s security team revealed that the well-known hacking group Clop—associated with various ransomware and extortion incidents—had sent emails to Oracle executives around September 29, threatening to release their personal data online unless paid. 

Charles Carmakal, chief technology officer at Google’s incident response division Mandiant, wrote on LinkedIn Sunday that Oracle’s E-Business Suite vulnerabilities were being exploited in a “large-scale campaign” aimed at data theft and extortion.  

Carmakal noted that much of this malicious activity took place in August, following the release of the July security patches. 

“Clop has been issuing extortion demands to multiple victims since last Monday,” Carmakal stated, but added that not every victim has been contacted by the hackers yet. 

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Hyperliquid News Today: Hayes-Hon Dispute Highlights the Rift Between Crypto Fundamentals and Market Hype

- Monad's MON token collapsed 40% in three days, triggering $6M+ liquidations on HyperLiquid as high-FDV projects face volatility risks. - Arthur Hayes criticized MON's 90% locked supply as a "hot potato" scheme, while founder Keone Hon defended its C++/Rust architecture and 1-second finality. - Whale wallets lost $1.9M-$4.17M in leveraged positions, highlighting systemic risks in low-liquidity tokens amid spoofed transfers and declining trading volume. - The debate underscores crypto's infrastructure vs.

Bitget-RWA2025/11/30 16:28
Hyperliquid News Today: Hayes-Hon Dispute Highlights the Rift Between Crypto Fundamentals and Market Hype

Bitcoin News Today: "Market Collapses While Ozak AI Skyrockets: 700x Returns Predicted Despite Crypto Downturn"

- In late November 2025, Bitcoin and Ethereum declined amid macroeconomic uncertainty, with BTC dropping to $86,559.24 and the CoinDesk 20 Index falling to 2,758 points. - Ozak AI ($OZ) defied the downturn, raising $4.53 million in its presale and projecting a 700x ROI by 2028 through decentralized infrastructure and AI-driven financial analytics. - Strategic partnerships with Phala Network and Meganet, plus a 30% token allocation for ecosystem growth, have fueled investor confidence in $OZ's long-term uti

Bitget-RWA2025/11/30 16:28
Bitcoin News Today: "Market Collapses While Ozak AI Skyrockets: 700x Returns Predicted Despite Crypto Downturn"

Strategic Property Investment in Emerging Shovel-Ready Areas: A Case Analysis of Webster, NY

- Webster , NY's $9.8M FAST NY grant transformed a 300-acre brownfield into a high-tech industrial hub with upgraded infrastructure. - Road, sewer, and grid improvements reduced industrial vacancy to 2%, attracting food processing and semiconductor firms. - A $650M dairy plant and NEAT site development highlight infrastructure-driven job creation and 10.1% residential property value growth. - Strategic 2025-2026 infrastructure timelines create investment windows as pre-peak pricing narrows before full mark

Bitget-RWA2025/11/30 16:26
Strategic Property Investment in Emerging Shovel-Ready Areas: A Case Analysis of Webster, NY

Cardano News Today: Cardano Bets $70 Million—Will It Surpass Ethereum by 2026?

- Cardano proposes a ₳70M 2026 budget to scale its decentralized ecosystem and enhance cross-chain interoperability. - Key upgrades include the Midnight privacy sidechain, Bitcoin-linked DeFi tools, and partnerships with Ctrl Wallet for 2,300+ blockchain interoperability. - Institutional adoption grows as Grayscale allocates 20% of a fund to ADA , while price analysis suggests potential $1.10+ rallies by mid-2026. - Long-term forecasts project ADA surpassing $3.25 by 2026 and $10.25 by 2030, contingent on

Bitget-RWA2025/11/30 16:12
Cardano News Today: Cardano Bets $70 Million—Will It Surpass Ethereum by 2026?