logo

Unpacking the Oracle EBS Debacle: Industries, Geography, and MOVEit Comparisons

ID: a108899e-fc66-51b5-8a89-67f47e17e57c

STIX ID: report--a108899e-fc66-51b5-8a89-67f47e17e57c

Feed Name: Censys Blog

Threat Score
85/100

Date Published: 2025-10-23

Date Updated: 2026-05-12

Author: Ivonne Francia; Emily Austin

...
...

Censys, Mandiant, and Google TIG observed an extortion campaign by Cl0p exploiting zero-day vulnerabilities in Oracle E-Business Suite (notably CVE-2025-61882 and CVE-2025-61884) to gain remote code execution and exfiltrate data; roughly 2,700 EBS instances were observed online with concentrations in the U.S., China, and India, and affected organizations span manufacturing, government, conglomerates, and energy sectors — the report details exposures, industry/geographic breakdowns, and comparisons to the 2023 MOVEit campaign.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.