{"id":34809,"date":"2025-10-10T19:51:35","date_gmt":"2025-10-10T19:51:35","guid":{"rendered":"https:\/\/agooka.com\/news\/technologies\/a-critical-oracle-zero-day-flaw-is-being-actively-abused-by-hackers\/"},"modified":"2025-10-10T19:51:35","modified_gmt":"2025-10-10T19:51:35","slug":"a-critical-oracle-zero-day-flaw-is-being-actively-abused-by-hackers","status":"publish","type":"post","link":"https:\/\/agooka.com\/news\/technologies\/a-critical-oracle-zero-day-flaw-is-being-actively-abused-by-hackers\/","title":{"rendered":"A critical Oracle zero-day flaw is being actively abused by hackers"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/dataconomy.com\/wp-content\/uploads\/2025\/10\/A-critical-Oracle-zero-day-flaw-is-being-actively-abused-by-hackers.jpg\" alt=\"A critical Oracle zero-day flaw is being actively abused by hackers\" title=\"A critical Oracle zero-day flaw is being actively abused by hackers\"\/><\/p>\n<p>According to security researchers at Google, the Clop extortion gang has stolen data from \u201cdozens of organizations\u201d by exploiting multiple security vulnerabilities in Oracle\u2019s E-Business Suite software. A statement and blog post from Google on Thursday indicated the hacking campaign, which targets corporate executives with extortion emails, dates back to at least July 10.<\/p>\n<p>Earlier this week, Oracle acknowledged that hackers were still actively abusing a zero-day vulnerability in its software to steal personal and corporate data. This followed an earlier, now-removed, statement from the company\u2019s chief security officer that had suggested the campaign was over and linked to vulnerabilities patched in July. In a security advisory, Oracle described the flaw as a bug that can be \u201cexploited over a network without the need for a username and password.\u201d<\/p>\n<p>The attackers have been identified as the Russia-linked Clop ransomware and extortion gang, which has a history of conducting mass-hacking campaigns using zero-day vulnerabilities in corporate software, such as managed file transfer tools. Oracle\u2019s E-Business Suite is used by companies to manage operations and store sensitive data, including customer information and employee HR files.<\/p>\n<p>To assist network defenders, Google\u2019s blog post provides technical details and indicators of compromise, including specific email addresses, to help organizations identify if their Oracle systems have been affected.<\/p>\n<p><a href=\"https:\/\/unsplash.com\/photos\/logo-k2jksaz9oWg\" rel=\"noreferrer\" target=\"_blank\"><strong>Featured image credit<\/strong><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>According to security researchers at Google, the Clop extortion gang has stolen data from \u201cdozens of organizations\u201d by exploiting multiple security vulnerabilities in Oracle\u2019s E-Business Suite software. A statement and blog post from Google on Thursday indicated the hacking campaign, which targets corporate executives with extortion emails, dates back to at least July 10. Earlier [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":34810,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[37],"tags":[],"class_list":{"0":"post-34809","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technologies"},"_links":{"self":[{"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/posts\/34809","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/comments?post=34809"}],"version-history":[{"count":0,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/posts\/34809\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/media\/34810"}],"wp:attachment":[{"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/media?parent=34809"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/categories?post=34809"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/agooka.com\/news\/wp-json\/wp\/v2\/tags?post=34809"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}