Cybercriminals claim breach of Oracle PeopleSoft servers at 100-plus organizations | TechCrunch

cybercriminals-claim-breach-of-oracle-peoplesoft-servers-at-100-plus-organizations-|-techcrunch

In Brief

Posted:

US multinational computer technology company Oracle's logo is pictured at the Mobile World Congress (MWC), the telecom industry's biggest annual gathering, in Barcelona on February 27, 2024.
Image Credits:PAU BARRENA / AFP / Getty Images
  • Lorenzo Franceschi-Bicchierai

The notorious cybercrime group ShinyHunters claimed to have hacked Oracle PeopleSoft servers at more than 100 organizations, many of them universities, a ShinyHunters member told TechCrunch on Wednesday. The breaches were first reported by BleepingComputer.

PeopleSoft is enterprise software designed to manage payroll, human resources, administration, and other business operations. 

The news shows that despite being one of the most visible and prolific cybercrime groups at the moment, ShinyHunters is not slowing down and has turned mass hacks into its specialty. The group’s modus operandi is to find a vulnerability in a popular piece of software so that they can compromise many victims at once.

“Student, applicant, financial aid, immigration, health, and administrative data has been exfiltrated,” read a message that the hacker said was sent to one of the victims. The hackers claimed to have stolen student records that include home addresses, phone numbers, emails, and dates of birth. 

The hacker added that most of the targeted schools had already been compromised in earlier, unrelated campaigns.

The group’s original goal, the member said, was to compromise an FBI PeopleSoft server — the goal being to post a statement denying ShinyHunters was behind a wave of swatting attempts the FBI flagged in an alert last month. The member said that attempt failed.

Oracle did not respond to a request for comment. 

Newsletters

Subscribe for the industry’s biggest tech news

Related

Latest in Security

Source: Techcrunch

Leave a Comment

Your email address will not be published. Required fields are marked *

mt-sample-background

© 2024 Egerin. All rights reserved.

Scroll to Top

Subscribe to receive News in Email

* indicates required

Intuit Mailchimp