Oracle Warns of E-Business Suite Bug
A Saturday advisory from Oracle's CISO warned of a vulnerability impacting some deployments of E-Business Suite (CVE-2025-61884).
All topics
A Saturday advisory from Oracle's CISO warned of a vulnerability impacting some deployments of E-Business Suite (CVE-2025-61884).
The Clop extortion campaign on Oracle customers last week stemmed from months of intrusion activity tracking back to July 10.
Researchers say that all three campaigns are being driven at least in part by one threat actor.
A critical GoAnywhere flaw (CVE-2025-10035) is being targeted in attacks by a threat group known for deploying Medusa ransomware.
October 7, 2025 | 2 min read
Oracle has patched a critical zero-day remote code execution flaw in its E-Business Suite, which was being exploited by the Clop gang in a rash of data theft and extortion attacks.
October 6, 2025 | 2 min read
The vulnerability (CVE-2025-41244) is easily exploitable, although it requires existing privileges on the target product.