Related Threat Clusters
-
Data Breach at University of Phoenix Due to Oracle EBS Zero-Day Exploit
The University of Phoenix reported a data breach on November 21, 2025, resulting from the exploitation of a zero-day vulnerability (CVE-2025-61882) in Oracle EBS. This flaw allowed threat actors to execute remote code…
2 articles · Updated December 8, 2025 -
Clop Hackers Exploit Oracle Zero-Day, Breaching Barts Health NHS and Dartmouth Data
Barts Health NHS and Dartmouth College confirmed data breaches due to exploitation of a zero-day vulnerability in Oracle E-Business Suite software by Clop hackers. The breaches resulted in the compromise of personal…
4 articles · Updated December 6, 2025 -
Logitech Confirms Data Breach from Zero-Day Exploit by Clop Gang
Logitech has confirmed a data breach resulting from a zero-day exploit that compromised its internal IT systems. The attack, attributed to the Clop extortion group, has likely affected customer data, raising concerns…
23 articles · Updated November 17, 2025 -
Critical Oracle WebLogic Flaw Under Active Exploitation
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-21962, a critical vulnerability affecting Oracle HTTP Server and WebLogic Server Proxy Plug-in, to its Known Exploited Vulnerabilities…
17 articles · Updated August 25, 2026 -
Operation Escaneo Targets Latin American Critical Infrastructure
Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…
4 articles · Updated June 18, 2026 -
Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015
A pre-authentication remote code execution (RCE) vulnerability, CVE-2026-35273, was discovered in Oracle PeopleSoft PeopleTools, affecting versions 8.61 and 8.62. The vulnerability allows unauthenticated attackers to…
5 articles · Updated June 18, 2026 -
ShinyHunters Exploits Oracle PeopleSoft Zero-Day Vulnerability
A critical zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft has been exploited by the ShinyHunters group, leading to breaches of over 100 organizations, primarily in the education sector. The vulnerability…
65 articles · Updated June 11, 2026 -
AI-Generated Exploits Target Siemens PLCs in Critical Infrastructure
On August 19, 2026, U.S. agencies issued a joint advisory confirming that threat actors are using AI-generated exploitation scripts to target Siemens S7 Series PLCs across critical infrastructure sectors, including…
36 articles · Updated August 19, 2026 -
FortiBleed Campaign Compromises 75,000+ Fortinet Devices Globally
A credential-harvesting campaign known as 'FortiBleed' has compromised over 75,000 Fortinet firewalls and VPNs across 194 countries. The attackers, suspected to be Russian-speaking cybercriminals, exploited previously…
105 articles · Updated June 17, 2026 -
Multiple Critical Vulnerabilities Exploited in SonicWall and SharePoint Systems
In July 2026, several critical vulnerabilities were exploited, impacting SonicWall SMA1000 appliances and SharePoint servers. Two zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410, were discovered in SonicWall…
2 articles · Updated July 28, 2026
Recent Intelligence Reports
- Carhartt data breach exposes information of 12.9 million accounts — Bleepingcomputer · August 27, 2026
- 89 — cwe.mitre.org · August 25, 2026
- Attacks on Oracle Weblogic and HTTP Server observed — Heise.De · August 25, 2026
- 004 — attack.mitre.org · August 20, 2026
- 'Near-autonomous' AI agents attack Taiwan's nuclear safety agency — Theregister · August 12, 2026
- KHunt Toolkit Turns Oracle SQL Injection Into SYSTEM — Gbhackers · August 6, 2026
- Oracle Linux 9 Thunderbird Important Security Advisory ELSA-2026 — Linuxsecurity · August 5, 2026
- CVE-2026-69240 AKAOMA CVE VULNERABILITIES / 1h Sequelize is a Node.js ORM tool. Prior to 6.37.4, SQL injection is possible with strings only if dialect is set to oracle. The escape function defined in sql-string.js does not escape quotes if the value starts with TO_TIMESTAMP or TO_DATE. In the Oracle dialect, when val is a string and starts with TO_TIMESTAMP or TO_DATE, escape returns val directly instead of replacing single quotes. An attacker can inject arbitrary SQL expressions through an app — cve.akaoma.com · August 4, 2026