Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    This $30 Gadget Keeps My Office and Workspace Organized at All Times – How It Works

    November 7, 2025

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Clop exploits Oracle Zero-Day for data theft from early August
    Security

    Clop exploits Oracle Zero-Day for data theft from early August

    PineapplesUpdateBy PineapplesUpdateOctober 7, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Clop exploits Oracle Zero-Day for data theft from early August
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Clop exploits Oracle Zero-Day for data theft from early August

    According to the clop ransomware gang Cybercity Company Crowdastrik, an important Oral e-business suit (EBS) has been exploiting zero-day bugs in data theft attacks since early August.

    Tracked Cve-2025-61882 And the weekend was packed by Oracle, this vulnerability was discovered in the BI publisher integration component of the concurrent processing component of the Oracle EBS, allowing informal attackers to obtain distance code execution on unpredited systems in low-complications attacks, which do not require user interactions.

    However, as the Watchtower Labs Security Researchers found reverse engineering Exploitation of a proof-of-concept (POC) leaked by online leaks $ Hunters Cybercrime Gang (with A May 2025 Timestamp), CVE-2025-61882 is actually a vulnerability chain that may allow the danger actors to obtain distance code execution without the need for authentication using a single HTTP request.

    On Monday, Crowdastric analysts reported that they first exploited the CVE-2025-61882 and saw the clop Rainmware gang as zero-day in early August to steal sensitive documents, saying that other danger groups could also join the attacks.

    “Crowdastric intelligence assesses with moderate belief that Graceful Spider is likely to be involved in this campaign, but cannot dismiss the possibility that many danger actors have exploited CVE -2025-61882. The first known exploitation is on August 9, 2025; however, investigation is on, and the subject to change the date, and this date is the subject to change the date,” Crowdastric said,

    “Crowdastric Intelligence further assessed that October 3, 2025 Proof-Off-Concept (POC) Disclosure and CVE-2025-61882 patch release will definitely encourage almost danger actors-especially people familiar with Oral EBS to create POCs and benefit them attempt to.”

    The Mandiant and the Google Threat Intelligence Group (GTIG) had last week told Bleepingcomputer that Clop was emailing officers in several companies as part of an ongoing forcible recovery campaign, requesting Ransom requesting Ransams to stop online from being stolen from his Oracle e-Business Suite System.

    Clop Extortion Email
    Clop Extortion Email (Google)

    On Thursday, Oracle linked the CVE-2025-61882 Oracle EBS vulnerability to email the forced recovery email claimed by the Clop Cybercrime Gang, urging customers to prefer to patch this actively exploited defect.

    “Oracle firmly recommends that customers implement the update provided by this safety alert as soon as possible. Oracle always recommends that the customer remain actively supported on supported versions and apply all safety alerts and important patch updates safety patches without delay,” Warned,

    Clop Extortion Group has a long history of misuse of zero-day flaws in large-scale data theft operations, recently after stealing his files in a target attacks (CVE-2014-50623), after taking out dozens of victims in January, in the safe file transfer software of Cleo.

    Earlier, clops were linked to several other data theft campaigns, which later, with the impact, targets zero-heart in Acellian FTA, Goyini MFT and Movit Transfer. Over 2,770 organizations,

    The US State Department now also provides a reward of $ 10 million for any information that can help connect clops ransomware attacks with a foreign government.


    Picus Base Summit

    attend Violation and attack simulation summit And experience Future of security verificationListen to top experts and see how AI-managed base Breach is changing and attacking simulation.

    Do not remember the event that will shape the future of your safety strategy

    August Clop data early exploits Oracle Theft zeroday
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleAnthropic plan to open India’s office, eye tie with billionaire Ambani
    Next Article Startup Battlefield Company äio invented a method to make food fats with egg waste like sawdust
    PineapplesUpdate
    • Website

    Related Posts

    AI/ML

    Google’s ‘Watch and Learn’ framework removes the data barrier for training computer-using agents

    October 31, 2025
    Startups

    Gemini for Home is finally becoming available for early access – here’s how to try it first

    October 29, 2025
    Startups

    Xtropic aims to disrupt the data center bonanza

    October 29, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    This $30 Gadget Keeps My Office and Workspace Organized at All Times – How It Works

    November 7, 2025

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.