Oracle News Articles
Recent news articles refferecing the vendors vulnerabilities.
CVE-2025-61757: Oracle Identity Manager RCE
Summary of CVE-2025-61757 auth bypass in Oracle Identity Manager enabling unauthenticated RCE, with observed scanning, patch details, and detection tips.
Canon Allegedly Breached by Clop Ransomware via Oracle E-Business Suite 0-Day Hack
Canon confirms it was targeted in the massive Clop ransomware campaign exploiting a zero-day in Oracle E-Business Suite (CVE-2025-61882).
Critical Oracle Identity Manager Flaw Under Attack
The exploitation of CVE-2025-61757 follows a breach of Oracle Cloud earlier this year and a extortion campaign against Oracle E-Business Suite customers.
CISA Adds Oracle Identity Manager Vulnerability To KEV
CISA has added an Oracle Identity Manager vulnerability to its Known Exploited Vulnerabilities catalog after SANS reported attack attempts on the flaw.
CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
The cybersecurity agency CISA has confirmed that a recently patched Oracle Identity Manager vulnerability has been exploited in the wild.
CISA Confirms Exploitation of Recent Oracle Identity Manager Vulnerability
The cybersecurity agency CISA has confirmed that a recently patched Oracle Identity Manager vulnerability has been exploited in the wild.
CISA Issues Warning as Hackers Target Oracle Identity Manager RCE Flaw
CISA has added a new Oracle vulnerability to its KEV catalog, warning that attackers are already exploiting, tracked as CVE-2025-61757.
CISA Issues Warning as Hackers Target Oracle Identity Manager RCE Flaw
CISA has added a new Oracle vulnerability to its KEV catalog, warning that attackers are already exploiting, tracked as CVE-2025-61757.
CISA Alerts on Oracle Identity Manager RCE Flaw Being Actively Exploited
CISA has issued an urgent warning about a critical remote code execution vulnerability in Oracle Identity Manager that threat actors are actively exploiting.
Oracle under attack: Pre-auth RCE vulnerability discovered that compromises entire systems
A critical pre-authentication remote code execution vulnerability has been discovered in Oracle Identity Manager, identified as CVE-2025-61757.
U.S. CISA adds an Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities catalog
U.S. CISA adds an Oracle Fusion Middleware vulnerability to its Known Exploited Vulnerabilities catalog...
CISA warns Oracle Identity Manager RCE flaw is being actively exploited
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) is warning government agencies to patch an Oracle Identity Manager tracked as CVE-2025-61757 that has been exploited in attacks, potentially as a zero-day.
Critical Oracle Identity Manager RCE flaw revealed, PoC published
Researchers published proof-of-concept code for authentication bypass and RCE in OIM.
Oracle Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack
The group claims to have successfully breached the tech giant's internal systems using a critical zero-day vulnerability in Oracle E-Business Suite (EBS), designated as CVE-2025-61882.
Cl0p ransomware hacks Oracle exploiting Oracle's own EBS zero-day
Oracle becomes victim to its own E-Business Suite (EBS) zero-day after the Cl0p ransomware claims the company as a victim in the group's own Oracle-fueled hacking spree.
Clop Ransomware Claims Oracle Breach Using E-Business Suite 0-Day
The notorious Clop ransomware gang, has listed Oracle Corporation on its dark web leak site, claiming to have successfully breached the technology giant's internal systems.
Oracle Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack
The notorious Clop ransomware gang has listed Oracle on its dark web leak site, alleging a successful breach of the tech giant's internal systems.
Critical Oracle Identity Manager Flaw Possibly Exploited as Zero-Day
A recently patched Oracle Identity Manager vulnerability tracked as CVE-2025-61757 may have been exploited as a zero-day.
Lessons from Oracle E-Business Suite Hack That Allegedly Compromises Nearly 30 Organizations Worldwide
A sophisticated cyberattack targeting Oracle E-Business Suite (EBS) customers has exposed critical vulnerabilities in enterprise resource planning systems, compromising an estimated 100 organizations worldwide between July and October 2025.
Cl0P Ransomware Group Allegedly Claims Breach of Entrust in Oracle 0-Day EBS Hack
The notorious Cl0P ransomware group has claimed responsibility for breaching digital security firm Entrust, exploiting a critical zero-day vulnerability in Oracle E-Business Suite (EBS). The attack, tied to CVE-2025-61882, marks another high-profile victim in Cl0P’s relentless assault on organizatio...
Cl0P Ransomware Group Allegedly Claims Breach of Entrust in Oracle 0-Day EBS Hack
The notorious Cl0P ransomware group has claimed responsibility for breaching digital security firm Entrust, exploiting a critical zero-day vulnerability in Oracle E-Business Suite (EBS). The attack, tied to CVE-2025-61882, marks another high-profile victim in Cl0P’s relentless assault on organizatio...
Washington Post confirms data on nearly 10,000 people stolen from its Oracle environment
The newspaper said a “bad actor” contacted the company in late September, prompting an investigation that nearly a month later confirmed the extent of compromise.
Hitachi subsidiary GlobalLogic impacted by Clop’s attack spree on Oracle customers
The digital engineering services firm said human resources data on nearly 10,500 current and former employees was exposed.