Close Menu
Tech Nova Mindset – Empower Innovation and Forward Thinking

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Thieves Stole ‘Nvidia’ Trailers. They Got 20 Tons of Sand

    September 25, 2026

    Appeals Court Lets the Pentagon Designate Anthropic a Supply-Chain Risk

    September 25, 2026

    Young organs may not be a fountain of youth for recipients

    September 25, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Thieves Stole ‘Nvidia’ Trailers. They Got 20 Tons of Sand
    • Appeals Court Lets the Pentagon Designate Anthropic a Supply-Chain Risk
    • Young organs may not be a fountain of youth for recipients
    • How Would AI Actually Kill All Humans? Here Are the Top 5 Scenarios
    • Social Media Bans for Kids Need Smarter Safety Design
    • The Pentagon wants $30 million to build an AI-powered lie detector
    • Google’s Gemini Can Now Make Calls for You on Pixel Phones
    • EPICS in IEEE Team Builds Portable Educational Platform
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    • Home
    • Gadgets
    • Reviews
    • Tech News
    • Future Tech
    • AI & Robotics
    • How-To Guides
    • More
      • Cybersecurity
      • Startups & Innovation
    Tech Nova Mindset – Empower Innovation and Forward Thinking
    Home»Cybersecurity»Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks
    Cybersecurity

    Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks

    kirklandc008@gmail.comBy kirklandc008@gmail.comJune 11, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Oracle PeopleSoft
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Oracle on Thursday released an out-of-band advisory addressing a PeopleSoft vulnerability that can be exploited by an unauthenticated attacker for remote code execution.

    The security alert comes amid reports that the notorious ShinyHunters hacker group has been targeting organizations that use PeopleSoft.

    PeopleSoft is an integrated enterprise resource planning (ERP) software suite widely used by large organizations for managing core business functions, including HR, payroll, finance, supply chain, and campus operations.

    The newly disclosed vulnerability is tracked as CVE-2026-35273, and Oracle says it’s a critical issue that affects PeopleSoft Enterprise PeopleTools versions 8.61 and 8.62. PeopleSoft Enterprise Applications users could also be impacted.

    It appears that only mitigations have been released by Oracle rather than a full patch.

    Oracle has not said whether CVE-2026-35273 has been exploited in the wild as a zero-day, but noted in its advisory, “We consider implementation of the recommended mitigations to be a high-priority risk reduction measure and strongly recommend immediate action to address the identified exposure.”

    Advertisement. Scroll to continue reading.

    Bleeping Computer and TechCrunch learned from hackers claiming to be affiliated with the ShinyHunters group that they targeted 300 PeopleSoft instances belonging to more than 100 organizations. 

    The hackers claimed to have chained old and zero-day vulnerabilities to gain access to data stored in the targeted PeopleSoft environments. The attacks appear to have been confirmed by a researcher, and Mandiant CTO Charles Carmakal has warned about zero-day exploitation.

    It’s not surprising that ShinyHunters would target software widely used by major enterprises to steal data that could later be used to extort victims. The cybercriminals previously targeted Salesforce customers in a massive data-theft campaign. 

    Bleeping Computer reported that the education sector was hit the hardest, and the University of Nottingham is one of the victims. The university has confirmed that it suffered a significant data breach. 

    While Oracle’s advisory does not mention exploitation, it’s not uncommon for the company to omit confirming in-the-wild attacks in its public documentation. 

    SecurityWeek reached out to Oracle for comment, but the company has not responded by the time of writing.

    TrendAI researchers have been credited by Oracle for reporting the vulnerability. Dustin Childs, Head of Threat Awareness at TrendAI’s Zero Day Initiative, told SecurityWeek, “Currently, we’re seeing limited exploitation, but our investigation is ongoing.”

    The news comes shortly after CISA warned of a 2024 Oracle WebLogic vulnerability being exploited in the wild.

    *updated with comments from Dustin Childs

    Related: Microsoft Patches Exploited Exchange Server Vulnerability

    Related: Oracle’s First Monthly Patches Resolve 77 Vulnerabilities

    Related: Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact

    addresses Attacks Oracle PeopleSoft reports vulnerability zeroday
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    kirklandc008@gmail.com
    • Website

    Related Posts

    Forget the AI Slowdown—the Vulnerability Explosion Is Already Happening

    September 19, 2026

    Ransomware in 2026: More groups, more victims, no slowdown

    July 26, 2026

    The 3 types of people who will excel in the AI agent era, according to tech leaders

    July 26, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Nothing CEO says phone prices are going to keep going up

    June 12, 20267 Views

    The best VPN routers of 2026: Expert tested and reviewed

    June 14, 20263 Views

    Google DeepMind Plans to Track AGI Progress With These 10 Traits of General Intelligence

    March 21, 20263 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Recent Posts
    • Thieves Stole ‘Nvidia’ Trailers. They Got 20 Tons of Sand
    • Appeals Court Lets the Pentagon Designate Anthropic a Supply-Chain Risk
    • Young organs may not be a fountain of youth for recipients
    • How Would AI Actually Kill All Humans? Here Are the Top 5 Scenarios
    • Social Media Bans for Kids Need Smarter Safety Design

    Thieves Stole ‘Nvidia’ Trailers. They Got 20 Tons of Sand

    September 25, 2026

    Appeals Court Lets the Pentagon Designate Anthropic a Supply-Chain Risk

    September 25, 2026

    Young organs may not be a fountain of youth for recipients

    September 25, 2026

    How Would AI Actually Kill All Humans? Here Are the Top 5 Scenarios

    September 25, 2026
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 TechNovaMindset. Designed by By Pro.

    Type above and press Enter to search. Press Esc to cancel.