Google bestätigt: ShinyHunters nutzte Oracle PeopleSoft Zero-Day-Lücke für Datendiebstahl

14 Quellen
  • Googles Mandiant bestätigte, dass ShinyHunters CVE-2026-35273, eine kritische PeopleSoft-Schwachstelle mit einem Score von 9,8, zwischen dem 27. Mai und 9. Juni als Zero-Day-Exploit ausnutzte.
  • Die University of Nottingham bestätigte einen Sicherheitsvorfall, bei dem etwa 454.600 E-Mail-Adressen sowie Passnummern, Finanzdaten und andere persönliche Datensätze offengelegt wurden.
  • Oracle veröffentlichte Abhilfemaßnahmen, aber keinen vollständigen Patch, und forderte Unternehmen dringend auf, exponierte PeopleSoft-Endpunkte sofort zu deaktivieren oder zu blockieren.
Quellen (14)
  1. 1 Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ... www.securityweek.com
  2. 2 ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026 ... thehackernews.com
  3. 3 ShinyHunters raids Nottingham Uni for student, alumni data www.theregister.com
  4. 4 University of Nottingham Data Breach - Have I Been Pwned haveibeenpwned.com
  5. 5 Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero ... www.securityweek.com
  6. 6 ShinyHunters target Oracle PeopleSoft in large-scale data theft ... fieldeffect.com
  7. 7 CVE-2026-35273 | Tenable® www.tenable.com
  8. 8 Oracle PeopleSoft Breached by The ShinyHunters Data Theft Attack pathlock.com
  9. 9 ShinyHunters Compromises University of Nottingham - DeXpose www.dexpose.io
  10. 10 Oracle PeopleSoft Data Breach 2026 - Instagram www.instagram.com
  11. 11 ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026 ... x.com
  12. 12 University of Nottingham Data Breach in 2026 - Breachsense www.breachsense.com
  13. 13 ShinyHunters gang targets Oracle PeopleSoft servers in data theft ... www.scworld.com
  14. 14 University of Nottingham Malaysia still assessing impact of cyberattack www.freemalaysiatoday.com

Schreibe einen Kommentar