Oracle hit by second hack, customer credentials stolen
Briefly

Oracle is facing a significant cybersecurity incident after hackers stole login credentials, causing an investigation by the FBI and CrowdStrike. The breach involved access to a "legacy environment" that hasn’t been active for eight years. Although Oracle stated that the stolen information is less threatening, the breach includes recent customer data from 2024 as confirmed by external cybersecurity researchers. They highlighted the value of the compromised data for phishing and account takeover attacks, raising concerns about the overall security implications for Oracle's customers.
The hackers accessed a legacy system with decade-old data, compromising usernames and encrypted passwords, prompting investigations by the FBI and CrowdStrike.
Oracle confirmed that some login credentials stolen were connected to customers in 2024, raising serious concerns over the implications for customer security.
Researchers from Trustwave asserted the stolen data represents a substantial risk for phishing scams and potential account takeovers, indicating a grave security threat.
The incident marks a significant breach for Oracle, with the stolen credentials posing risks despite the company claiming they came from an outdated system.
Read at Techzine Global
[
|
]