ShinyHunters Hackers Renew Mass Attacks on Oracle PeopleSoft Systems
Google's cybersecurity division reported that the hacking group ShinyHunters has renewed large scale exploitation of a vulnerability in Oracle's PeopleSoft software. The group had previously targeted this flaw during earlier attacks over the summer, but has now found ways around the defenses that organisations put in place in response.
PeopleSoft is widely used by large organisations for human resources, finance and supply chain management, meaning successful attacks could expose sensitive employee and business data. The renewed campaign suggests that patches or mitigations applied earlier this year may not be sufficient to stop the latest attack methods being used by this group.
ShinyHunters has a history of large scale data theft campaigns targeting corporate systems, and this development signals that organisations using Oracle PeopleSoft should reassess their security posture rather than assume earlier fixes remain effective.