Borncity Chinese Hackers Exploit Microsoft 365 for 18 Months; Oracle PeopleSoft Vulnerability Targeted
Article Content
- •Chinese hackers maintained access to Microsoft 365 for 18 months, affecting multiple organizations.
- •CVE-2026-35273 in Oracle PeopleSoft was published on June 11, 2026, and is actively exploited.
- •Europol's takedown of a crypto mixer service underscores the ongoing fight against cybercrime.
Chinese hackers infiltrated Microsoft 365 environments, maintaining access for 18 months before detection. The attack exploited vulnerabilities to harvest sensitive data from various organizations. Simultaneously, a new vulnerability in Oracle PeopleSoft (CVE-2026-35273) was disclosed, with active exploitation reported shortly after its publication. This CVE was added to the CISA KEV list on June 12, 2026, indicating its critical nature. The vulnerability allows unauthorized access to sensitive information, impacting numerous organizations using the affected software. Additionally, Europol recently dismantled a cryptocurrency mixer service linked to cybercriminal activities, further illustrating the ongoing battle against cyber threats. The combination of these incidents highlights the evolving landscape of cyber threats and the need for robust security measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (12)
Following this threat?
Track CVE-2026-35273 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
AI-Generated Exploits Target Siemens PLCs in Critical Infrastructure On August 19, 2026, U.S. agencies issued a joint advisory confirming that threat actors are using AI-generated exploitation scripts to target Siemens S7 Series PLCs across critical infrastructure sectors, including water, energy, and manufacturing. The advisory, co-signed by the NSA, CISA, FBI, DOE, and EPA…
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…