Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    This $30 Gadget Keeps My Office and Workspace Organized at All Times – How It Works

    November 7, 2025

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»American Airlines subsidiary Envoy confirms Oracle data breach attack
    Security

    American Airlines subsidiary Envoy confirms Oracle data breach attack

    PineapplesUpdateBy PineapplesUpdateOctober 18, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    American Airlines subsidiary Envoy confirms Oracle data breach attack
    Share
    Facebook Twitter LinkedIn Pinterest Email

    American Airlines subsidiary Envoy confirms Oracle data breach attack

    Envoy Air, a regional airline carrier owned by American Airlines, has confirmed that data from its Oracle E-Business Suite application was compromised after the Clop extortion gang listed American Airlines on its data leak site.

    “We are aware of an incident involving Envoy’s Oracle E-Business Suite application,” Envoy Air told BleepingComputer.

    “Upon learning of the matter, we immediately initiated an investigation and law enforcement was contacted. We have thoroughly reviewed the relevant data and have confirmed that no sensitive or customer data was impacted. A limited amount of business information and commercial contact details may have been compromised.”

    Envoy Air is a subsidiary of American Airlines and operates regional flights under the American Eagle brand. Although it operates as a separate company, it is integrated into the American network for ticketing, scheduling, and passenger service.

    The Clop ransomware gang is now leaking data stolen from Envoy on their data leak site, stating, “The company doesn’t care about its customers, it disregards their security!!!”

    This new security incident is related to a data theft campaign carried out in August by the Clop extortion group, which began sending extortion-demanding emails to companies in September while claiming to steal data from Oracle E-Business Suite systems.

    While Oracle initially said threat actors were taking advantage of vulnerabilities patched in July, the company later revealed that the extortion gang took advantage of a zero-day flaw tracked as CVE-2025-61882 in the attacks.

    CrowdStrike and Mandiant later revealed that Klopp took advantage of the flaw in early August to break into the system and deploy malware.

    While Klopp would not share how many companies were affected by the data breach attacks, Google’s John Hultquist told BleepingComputer via email that he believed dozens of organizations were affected.

    The Klopp gang is also extorting Harvard University as part of the same data theft campaign, with the university confirming to BleepingComputer that the incident affected “a limited number of parties associated with a small administrative unit.”

    Last week, Oracle quietly patched another e-Business Suite zero-day tracked CVE-2025-61884, without disclosing that it was actively exploited in July 2025.

    This zero-day is linked to an exploit leaked by the Shiny Lapsus$ Hunters extortion group on Telegram.

    American Airlines previously suffered data breaches in 2022 and 2023 that exposed employees’ personal information.

    Who is Klopp?

    The Cloop ransomware operation, also tracked as TA505, Cl0p, and FIN11, was launched in 2019 when it began breaking into corporate networks to deploy a variant of the Cryptomix ransomware and steal data.

    Since 2020, extortion gangs have shifted from primarily ransomware to exploiting zero-day vulnerabilities in secure file transfer or data storage platforms to steal data.

    Some of their attacks using zero-day flaws include:

    The US State Department currently offers a $10 million reward for information linking Klopp’s ransomware activities to a foreign government.


    picus blue report 2025

    Passwords were cracked in 46% of environments, almost double from 25% last year.

    Get the Picus Blue Report 2025 now for a comprehensive look at prevention, detection, and more findings on data intrusion trends.

    Airlines American Attack Breach confirms data Envoy Oracle subsidiary
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleChatGPT’s mobile app is seeing slowing download growth and daily usage, analysis shows
    Next Article Mark Wahlberg recently bought a $37 million mansion in Florida
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    Inside Glen Powell’s mission to redefine the American pantry

    November 1, 2025
    AI/ML

    Google’s ‘Watch and Learn’ framework removes the data barrier for training computer-using agents

    October 31, 2025
    Startups

    Xtropic aims to disrupt the data center bonanza

    October 29, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    This $30 Gadget Keeps My Office and Workspace Organized at All Times – How It Works

    November 7, 2025

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.