Oracle Confirms Targeted Attacks on E-Business Suite Data via Extortion Emails
ID: 996a0418-d385-55bd-aa2e-a1192b096377
STIX ID: report--996a0418-d385-55bd-aa2e-a1192b096377
Feed Name: Cyber Press
Threat Score
Oracle reported that attackers exploited E-Business Suite vulnerabilities addressed in the July 2025 Critical Patch Update to steal data and are conducting a large-scale extortion campaign against enterprises, using compromised third-party accounts to send ransom demands (up to $50M) and showing proof-of-exfiltration; Oracle urges customers to apply the July 2025 CPU, review access and password-reset logs, enforce MFA, and tighten email authentication controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
