You are connecting from Lake Geneva Public Library, please login or register to take advantage of your institution's Ground News Plan.
Published 49 minutes ago • loading... • Updated 2 hours ago
ShinyHunters hackers expanded attacks on Oracle’s PeopleSoft, Google says
Google said ShinyHunters resumed exploiting an Oracle PeopleSoft flaw, targeting dozens of systems after adapting to earlier defensive guidance, Mandiant said.
On Friday, Google's cybersecurity unit reported that hacking group ShinyHunters has renewed "mass exploitation" of a security flaw in Oracle's PeopleSoft software, bypassing defenses implemented after summer attacks.
Mandiant reported that hackers adapted to defensive guidance published after the May-June attacks, targeting organizations that implemented firewall rules but failed to apply Oracle's critical PeopleSoft security patch.
ShinyHunters claimed the latest attack affected dozens of global systems across healthcare and government sectors; the group previously alleged it accessed Federal Bureau personnel data and sensitive records.
In a statement issued Wednesday, the FBI said it was "aggressively investigating" the reported breach, though Reuters has not been able to corroborate the hacker's claims.
Oracle did not respond to requests for comment regarding the renewed exploitation, while researchers continue evaluating the security compromise's extent across affected global systems.