Russian Clop hackers stole data from dozens of international companies through Oracle vulnerabilities

 • 3278 переглядiв

Google specialists have discovered a large-scale cyberattack by the Russian Clop group, which stole data from dozens of international organizations. Hackers used vulnerabilities in Oracle E-Business Suite software, demanding a ransom for the stolen information.

Google cybersecurity specialists have uncovered a large-scale cyberattack campaign carried out by the Russian hacking group Clop, which led to the theft of data from dozens of international organizations. This is reported by TechCrunch, writes UNN.

Details

According to Google, the attackers exploited numerous vulnerabilities in Oracle E-Business Suite corporate software, which is used to manage business processes, store customer data, and employee personnel files.

CERT-UA detected cyberattacks on the Defense Forces via malicious XLL files01.10.25, 16:41

Having gained access to the companies' internal systems, the hackers stole a significant amount of sensitive information, after which they sent emails to executives with demands for ransom. According to preliminary information, the attacks began on July 10, but they were only discovered three months later.

Oracle officially confirmed the use of its software in hacking operations. Although the company previously stated that all known vulnerabilities had been eliminated in July, a new report acknowledged the existence of a "zero-day" vulnerability – one that the developer was unaware of and that allows remote attacks without entering a login or password.

Chinese hackers breached US law firms08.10.25, 06:53

The Russian group Clop is known for its large-scale attacks on corporate services using vulnerabilities unknown to manufacturers. It was previously involved in breaches of Cleo, MOVEit, and GoAnywhere systems, which led to the leakage of millions of records of personal and financial data.

In its official blog, Google published technical details of the incident, as well as a list of email addresses associated with the hackers, which can help cybersecurity specialists detect compromised Oracle systems and prevent further attacks.

Two teenagers detained in the Netherlands on suspicion of spying for Russia26.09.25, 13:31

Popular
Trump said the US is not obligated to help Ukraine

 • 8586 переглядiв

Zelenskyy instructed Umerov on negotiations and announced new meetings with partners

 • 10021 переглядiв

Trump assessed the likelihood of Israel using nuclear weapons against Iran

 • 10598 переглядiв

Near Kyiv, a man shot his sick 11-year-old daughter, then committed suicide

 • 11068 переглядiв

News by theme
Trump allowed for additional sanctions against Russia

 • 3922 переглядiв

Russians attacked Kyiv region: fires in a private house and a mini-market

 • 3775 переглядiв

7-year-old boy wounded during Russia's night attack dies in Zaporizhzhia - OVA

 • 3238 переглядiв

Night attack on Kyiv: number of injured increased to nine - Klychko

 • 3561 переглядiв

Three wounded as a result of Russia's night attack on Zaporizhzhia - OVA

 • 2696 переглядiв

Russian attack on Kyiv: eight injured, power outages reported

 • 33304 переглядiв

Russians massively attacked Ukraine's energy infrastructure - Ministry of Energy

 • 26578 переглядiв