Microsoft Fixes Actively Exploited Flaws in Patch Tuesday Release
Microsoft issued fixes for several actively exploited vulnerabilities in its latest patch Tuesday release.
All topics
Microsoft issued fixes for several actively exploited vulnerabilities in its latest patch Tuesday release.
A Saturday advisory from Oracle's CISO warned of a vulnerability impacting some deployments of E-Business Suite (CVE-2025-61884).
The Clop extortion campaign on Oracle customers last week stemmed from months of intrusion activity tracking back to July 10.
Researchers say that all three campaigns are being driven at least in part by one threat actor.
A critical GoAnywhere flaw (CVE-2025-10035) is being targeted in attacks by a threat group known for deploying Medusa ransomware.
October 7, 2025 | 2 min read
Oracle has patched a critical zero-day remote code execution flaw in its E-Business Suite, which was being exploited by the Clop gang in a rash of data theft and extortion attacks.
October 6, 2025 | 2 min read