PeopleSoft — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
16
occurrences
First Seen
June 11, 2026
Last Seen
July 6, 2026

PeopleSoft is a technology platform tracked by ThreatCluster, appearing in 9 threat clusters built from 16 intelligence report mentions.

PeopleSoft is a technology platform tracked across 9 threat clusters and 16 intelligence report mentions on ThreatCluster. First observed June 11, 2026; most recent activity July 6, 2026.

Related Threat Clusters

  • Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015

    A pre-authentication remote code execution (RCE) vulnerability, CVE-2026-35273, was discovered in Oracle PeopleSoft PeopleTools, affecting versions 8.61 and 8.62. The vulnerability allows unauthenticated attackers to…

    5 articles · Updated June 18, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day Vulnerability

    A critical zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft has been exploited by the ShinyHunters group, leading to breaches of over 100 organizations, primarily in the education sector. The vulnerability…

    65 articles · Updated June 11, 2026
  • Oracle CSPU May 2026: 35 Critical Vulnerabilities Addressed

    Oracle released its first Critical Security Patch Update (CSPU) on May 28, 2026, addressing 35 vulnerabilities across multiple product families, including Oracle Database, Oracle REST Data Services, and Oracle…

    68 articles · Updated May 29, 2026
  • Nissan Data Breach Exposes Employee Records via Oracle Vulnerability

    Nissan disclosed a data breach affecting current and former employees after attackers exploited a critical vulnerability in Oracle PeopleSoft, specifically CVE-2026-35273. This breach potentially exposed sensitive…

    11 articles · Updated June 29, 2026
  • Moody Bible Institute Data Breach Exposes 2.3 Million Accounts

    The Moody Bible Institute (MBI) suffered a significant data breach affecting over 2.3 million individuals due to a cyberattack by the ShinyHunters group. The breach, disclosed in June 2026, involved the leak of personal…

    5 articles · Updated July 6, 2026
  • Kodak Confirms Data Breach Linked to ShinyHunters Gang

    Kodak has confirmed a data breach after the ShinyHunters extortion group claimed responsibility for stealing over 2.2 million records, including customer personally identifiable information (PII) and internal corporate…

    5 articles · Updated June 17, 2026
  • ShinyHunters Gang Breaches Infinite Campus, Exposing 137,000 School Staff Records

    In March 2026, the ShinyHunters extortion group executed a data breach targeting the Infinite Campus K-12 student information system, compromising personal information of over 137,000 school staff accounts. The attack…

    3 articles · Updated June 16, 2026
  • ShinyHunters Target SSO Accounts in Voice Phishing Attacks

    The ShinyHunters extortion gang has claimed responsibility for a series of voice phishing attacks targeting single sign-on (SSO) accounts at major platforms including Okta, Microsoft, and Google. In these attacks,…

    171 articles · Updated January 25, 2026
  • Cybersecurity Challenges in Higher Education Institutions

    Higher education institutions are facing significant cybersecurity threats, including ransomware, phishing, and data breaches. These challenges are exacerbated by the shift to digital learning and insufficient budgets,…

    143 articles · Updated January 30, 2026

Recent Intelligence Reports

  • Moody Bible Institute breach leaves 2.3M accounts needing salvation, says cyber expert — Theregister · July 6, 2026
  • Active Exploitation Alert: Critical Oracle E-Business Suite CVE-2026 — Rescana · June 30, 2026
  • Nissan says Oracle PeopleSoft break-in may have spilled payroll records, SSNs — Theregister · June 29, 2026
  • NAIC says leaked data has been published online by threat actor ShinyHunters — Theinsurer · June 26, 2026
  • NAIC confirms breach as ShinyHunters dumps 3.1TB tied to national insurance systems — Cybernews · June 26, 2026
  • PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes ... — Trendmicro · June 18, 2026
  • PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes ... — Trendmicro · June 18, 2026
  • PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes Inside the JVM — Feeds.Trendmicro · June 18, 2026

Frequently asked questions

What is PeopleSoft?

PeopleSoft is a technology platform tracked by ThreatCluster, appearing in 9 threat clusters built from 16 intelligence report mentions.

Is PeopleSoft still active?

The most recent intelligence report mentioning PeopleSoft on ThreatCluster is dated July 6, 2026. Activity was first observed June 11, 2026, giving a tracked span from then to July 6, 2026.

What is PeopleSoft associated with?

Across ThreatCluster reporting, PeopleSoft most frequently co-occurs with Shadow-aether-015, ShinyHunters, Data Breach, Malware, Ransomware, among 12 tracked related entities.

What are the latest developments involving PeopleSoft?

The most significant recent cluster is “Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015” (5 articles · Updated June 18, 2026). PeopleSoft appears across 9 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on PeopleSoft?

PeopleSoft appears in 16 intelligence report mentions across 9 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown