ShinyHunters renews attacks on Oracle's PeopleSoft, Google reports
Summary
On September 25, Google's cybersecurity unit reported that the hacking group ShinyHunters has intensified its exploitation of a security flaw in Oracle's PeopleSoft software, following a period of defenses implemented after earlier attacks. ShinyHunters, which has been linked to several significant data breaches, is believed to have adapted its methods to target organizations that had implemented web application firewalls but failed to apply Oracle's patch for the vulnerability. This resurgence in attacks has raised concerns among institutions relying on PeopleSoft, impacting various sectors including higher education, technology, healthcare, agriculture, transportation, and government. Law enforcement is currently investigating claims that ShinyHunters accessed sensitive FBI personnel data through this vulnerability.