Google confirme que ShinyHunters a exploité une faille zero-day d’Oracle PeopleSoft pour voler des données

14 sources
  • Mandiant de Google a confirmé que ShinyHunters a exploité CVE-2026-35273, une faille critique de PeopleSoft notée 9,8, en tant que zero-day entre le 27 mai et le 9 juin.
  • L'Université de Nottingham a confirmé une violation exposant environ 454 600 adresses e-mail ainsi que des numéros de passeport, des données financières et d'autres dossiers personnels.
  • Oracle a publié des mesures d'atténuation mais pas de correctif complet, exhortant les organisations à désactiver ou à bloquer immédiatement les points de terminaison PeopleSoft exposés.
Sources (14)
  1. 1 Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ... www.securityweek.com
  2. 2 ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026 ... thehackernews.com
  3. 3 ShinyHunters raids Nottingham Uni for student, alumni data www.theregister.com
  4. 4 University of Nottingham Data Breach - Have I Been Pwned haveibeenpwned.com
  5. 5 Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero ... www.securityweek.com
  6. 6 ShinyHunters target Oracle PeopleSoft in large-scale data theft ... fieldeffect.com
  7. 7 CVE-2026-35273 | Tenable® www.tenable.com
  8. 8 Oracle PeopleSoft Breached by The ShinyHunters Data Theft Attack pathlock.com
  9. 9 ShinyHunters Compromises University of Nottingham - DeXpose www.dexpose.io
  10. 10 Oracle PeopleSoft Data Breach 2026 - Instagram www.instagram.com
  11. 11 ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026 ... x.com
  12. 12 University of Nottingham Data Breach in 2026 - Breachsense www.breachsense.com
  13. 13 ShinyHunters gang targets Oracle PeopleSoft servers in data theft ... www.scworld.com
  14. 14 University of Nottingham Malaysia still assessing impact of cyberattack www.freemalaysiatoday.com

Laisser un commentaire