logo

Oracle Confirms Targeted Attacks on E-Business Suite Data via Extortion Emails

ID: 996a0418-d385-55bd-aa2e-a1192b096377

STIX ID: report--996a0418-d385-55bd-aa2e-a1192b096377

Feed Name: Cyber Press

Threat Score
78/100

Date Published: 2025-10-03

Date Updated: 2026-04-13

Author: AnuPriya

...
...

Oracle reported that attackers exploited E-Business Suite vulnerabilities addressed in the July 2025 Critical Patch Update to steal data and are conducting a large-scale extortion campaign against enterprises, using compromised third-party accounts to send ransom demands (up to $50M) and showing proof-of-exfiltration; Oracle urges customers to apply the July 2025 CPU, review access and password-reset logs, enforce MFA, and tighten email authentication controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.