Oracle Releases Emergency Patch for CVE-2025-61882 Amid Cl0p Data Theft Attacks

TL;DR
Oracle released an emergency patch for a critical vulnerability (CVE-2025-61882) in its E-Business Suite, which has been exploited by the Cl0p ransomware group in recent data theft attacks. The flaw allows remote code execution without authentication, and indicators suggest involvement of the LAPSUS$ group. Organizations are advised to check for compromises, as exploitation has already occurred.
Topics:businessthreat-intelligence#cl0p#cve-2025-61882#data-theft#oracle#security-patch#threat-intelligence
- Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks The Hacker News
- Google says hackers are sending extortion emails to corporate executives Reuters
- Oracle patches EBS zero-day exploited in Clop data theft attacks BleepingComputer
- Oracle Investigating Hacks of Customers’ E-Business Suite Yahoo Finance
- Oracle pushes emergency weekend patch amid 0day exploitation The Stack
Want the full story? Read the original reporting
Read on The Hacker News