Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks
Oracle released an emergency E-Business Suite update to patch CVE-2025-61882, a remotely exploitable unauthenticated flaw used in Cl0p data theft enabling remote code execution.
Oracle Says Known Vulnerabilities Possibly Exploited in Recent Extortion Attacks
Extortion emails targeting Oracle E-Business Suite customers indicate possible exploitation of vulnerabilities fixed in Oracle's July 2025 Critical Patch Update; Cl0p and FIN11 links suspected.
Google Mandiant Probes New Oracle Extortion Wave Possibly Linked to Cl0p Ransomware
A high-volume extortion campaign, possibly linked to Cl0p and using compromised accounts tied to FIN11/TA505, targets executives claiming Oracle E-Business Suite data theft.