Maine breach portal abused to publish fake data breach disclosures
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities
Google’s Mandiant attributes it to the group it tracks as UNC6240, and dates the activity between May 27 and June 9. Oracle did not publish its advisory until June 10, so the bug was a
Oracle mitigates PeopleSoft zero-day exploited in data theft attacks
New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets
Imperva buried instructions inside shared contacts, vCards, and location pins that the agent executed without the victim ever seeing them. Varonis built a test agent on
New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML Files
“This was an accidental discovery, it took a total of 4 hours to find this,” the researcher said in a post on Blogger. “If you ever attempted to use Windows Defender Offline Scan, you’re
The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm
According to a detailed report
Authorities dismantle ‘AudiA6’ ransomware crypto-laundering service
Why AI-driven threats are exposing the limits of MSP security stacks
Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks
Oracle has released a patch for CVE-2026-35273, but it has not said whether it’s a zero-day exploited in ShinyHunters attacks.
The post Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks appeared first on SecurityWeek.
