Oracle links Clop extortion attacks to July 2025 vulnerabilities
ID: 91f8df17-6bae-53ad-8905-f01dfced4a5e
STIX ID: report--91f8df17-6bae-53ad-8905-f01dfced4a5e
Feed Name: Bleeping Computer
Threat Score
Oracle reported that some customers received extortion emails allegedly from the Clop ransomware group tied to previously disclosed Oracle E-Business Suite vulnerabilities patched in the July 2025 Critical Patch Update; threat intel firms observed ransom demands sent to executives starting on or before 29 September 2025, and Clop has claimed responsibility while investigators continue assessing whether data exfiltration occurred.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
