Daily Dark Web
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
  • Home
  • Data Breaches
  • Inside the Adversary
    • Dark Web Informants
  • DDW Top Lists
  • Ransomware News
  • DarkWeb News
    • Vulnerability
    • Cyber Attacks
  • Unauthorized Accesses
  • About Us
No Result
View All Result
Daily Dark Web
No Result
View All Result
Home Vulnerability

Oracle Patches CVE−2025−61882

🇺🇸 United States - Oracle Corporation (Oracle)

October 6, 2025
Reading Time: 2 mins read
Oracle Patches CVE−2025−61882

The Cl0p ransomware group has exploited a critical zero-day vulnerability in the E-Business Suite (EBS) of Oracle Corporation, a multinational technology company specializing in database software and enterprise products.

The vulnerability, tracked as CVE−2025−61882, is a critical flaw with a CVSS score of 9.8 out of 10. It allows an unauthenticated attacker with network access to achieve remote code execution on affected systems. In response to active exploitation by Cl0p for data theft campaigns, Oracle has released an emergency security patch and urged customers to apply the update immediately.

Adding another layer to the incident, a threat actor group known as Scattered LAPSUS$ Hunters (SLH) publicly claimed that the exploit used by Cl0p was originally theirs. In a statement on their Telegram channel, the group expressed frustration, stating, “This was OUR FUCKING EXPLOIT. WE WERE GOING TO RUN THIS FUCKING CAMPAIGN.” They claimed Cl0p had somehow acquired their zero-day before they could launch their own attacks.

According to reports, the Cl0p group leveraged the exploit to conduct a series of data theft attacks against organizations using the vulnerable software. The vulnerability could allow attackers to access and exfiltrate a wide range of sensitive corporate and customer information. The potentially compromised data includes:

  • Financial records
  • Sensitive employee information (PII)
  • Customer data
  • Proprietary business documents
Tags: Cl0pCVE-2025-61882CyberSecuritydata theftE-Business SuiteoracleScattered Lapsus$ HuntersSLHUnited StatesZero-Day
ShareTweet

Related Posts

CPUID Website Compromised: CPU-Z and HWMonitor Serve Malware
Vulnerability

CPUID Website Compromised: CPU-Z and HWMonitor Serve Malware

April 10, 2026
Axios npm Package Compromised in Supply Chain Attack
Vulnerability

Axios npm Package Compromised in Supply Chain Attack

March 31, 2026
Critical Figma MCP Server Flaw Allows Remote Code Execution
Vulnerability

Critical Figma MCP Server Flaw Allows Remote Code Execution

October 8, 2025
Shai-Hulud Worm Infects Over 500 NPM Packages in Sophisticated Supply Chain Attack
Vulnerability

Shai-Hulud Worm Infects Over 500 NPM Packages in Sophisticated Supply Chain Attack

September 17, 2025
WinRAR Zero-Day RCE Vulnerability Allegedly for Sale for $65,000
Vulnerability

WinRAR Zero-Day RCE Vulnerability Allegedly for Sale for $65,000

September 8, 2025
Atomic and Exodus Crypto Wallets at Risk from Deceptive npm Package
Vulnerability

Atomic and Exodus Crypto Wallets at Risk from Deceptive npm Package

September 2, 2025
Next Post
Akira Ransomware Group Claims Natoli Engineering, Field and Goldberg LLC, and Saskarc Inc

Akira Ransomware Group Claims Natoli Engineering, Field and Goldberg LLC, and Saskarc Inc

Harrods Data Breach Exposes Data of Over 433,000 Customers

Harrods Data Breach Exposes Data of Over 433,000 Customers

Recommended Stories

MacMulkin Chevrolet Data Breach: 1.4 Million Customer Records for Sale

MacMulkin Chevrolet Data Breach: 1.4 Million Customer Records for Sale

January 21, 2026
Région Hauts-de-France Suffers Massive 1.1TB Data Breach

Région Hauts-de-France Suffers Massive 1.1TB Data Breach

October 14, 2025
Bicing Data Breach Exposes 353k Barcelona Client Records

Bicing Data Breach Exposes 353k Barcelona Client Records

October 16, 2025

Popular Stories

  • SudamericaData Breach Exposes Over 1TB of Argentine Records

    SudamericaData Breach Exposes Over 1TB of Argentine Records

    0 shares
    Share 0 Tweet 0
  • Threat Actor Claims Sale of Dell Database Containing 49 Million Customer Records

    0 shares
    Share 0 Tweet 0
  • SUUMO, CHINTAI, At Home, HOME’S Suffer Data Breach

    0 shares
    Share 0 Tweet 0
  • Financial Tech Giant SilverLake Axis Allegedly Breached – 423GB of Data for Sale

    0 shares
    Share 0 Tweet 0
  • Telekom Serbia Investigates Leak of 160,000 Customer Records

    0 shares
    Share 0 Tweet 0
Daily Dark Web

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

No Result
View All Result
  • About Us
  • Home
  • Newsletter
  • Privacy Policy

Disclaimer: Daily Dark Web (DDW) is an independent media platform providing information, analysis, and reporting on cybersecurity, cyber incidents, and related digital developments. All content published on this website is for informational and journalistic purposes only. DDW does not support, endorse, or promote any illegal activities, threat actors, or organizations referenced in its content. Any statements, claims, or opinions expressed by third parties, including interview subjects, are their own and do not reflect the views of DDW. Such content may include unverified information and should be interpreted critically. DDW does not participate in, facilitate, or coordinate any activities discussed or referenced on this platform. Under no circumstances should any content be interpreted as encouragement, instruction, or endorsement of unlawful actions. All interactions and publications are conducted in the public interest to enhance awareness and understanding of the evolving cyber landscape.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?