daily cyber × ai intelligence

index

tagged

[oracle]

11 editions · 12 items

August 7, 2026

  • Attackers turned an Oracle SQL injection into Windows SYSTEM access using khunt, a database-resident post-exploitation toolkit. They fed Java source into Oracle, let the DB compile it into stored schema objects, and ran commands from inside the engine — dumping SAM/SECURITY/SYSTEM hives while most activity stayed buried in Apache logs rather than endpoint telemetry. The Hacker News, Huntress · Offensive Techniques

in Meta Becomes the Fourth Lab to Admit Its AI Hacked a Stranger

June 30, 2026

  • Oracle E-Business Suite CVE-2026-46817 (CVSS 9.8), an improper-privilege/auth flaw in Oracle Payments, is now being exploited in the wild per Defused, allowing instance takeover. The Hacker News, BleepingComputer · Vulnerabilities & Exploits
  • NAIC confirmed a breach by ShinyHunters via an Oracle PeopleSoft zero-day (group claims 3.1 TB stolen); Nissan disclosed an employee-data breach tied to the same PeopleSoft exploitation campaign. NAIC, Nissan · Threat Activity

in Edge Appliances Bleed: watchTowr Drops Kemp LoadMaster Pre-Auth RCE as Oracle EBS Joins the Exploited List

June 18, 2026

  • Oracle PeopleSoft CVE-2026-35273 unauthenticated RCE is under active exploitation by ShinyHunters (aka Bling Libra), with the education sector hit hardest since at least late May. Horizon3 confirmed exploitation predating disclosure, and Unit 42 corroborates the campaign against universities. watchTowr warns that "vibecoded" PoCs circulating are only the first-stage SSRF, not the full chain — treat public exploits skeptically (watchTowr). · Vulnerabilities & Exploits

in ShinyHunters Burns a PeopleSoft Zero-Day Through Higher Ed as Copilot "SearchLeak" Shows AI Is the New Exfil Channel