Cl0p-Linked Gang Attempts to Extort Oracle E-Business Customers
ID: 3c52b550-abf1-56af-88f2-d818d2e9465a
STIX ID: report--3c52b550-abf1-56af-88f2-d818d2e9465a
Feed Name: HackRead
Threat Score
**Extortion campaign targeting Oracle E‑Business Suite users:** Multiple organizations have received high-volume extortion emails claiming stolen EBS data and using email addresses linked to Cl0p; Mandiant and Google GTIG are investigating but have not yet substantiated data theft, while Oracle points to possible exploitation of vulnerabilities fixed in the July 2025 Critical Patch Update.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
