Oracle races to patch a another zero-day following rise in attacks

  • Oracle patched CVE-2025-61884, a critical unauthenticated E-Business Suite vulnerability
  • ShinyHunters allegedly exploited the flaw to steal sensitive corporate data from multiple organizations
  • This is Oracle’s second patch addressing exploit chains used in recent ransomware extortion campaigns

Oracle has patched yet another E-Business Suite vulnerability that was allegedly used by the ShinyHunters team to exfiltrate sensitive corporate data from numerous organizations.

Earlier this week, the company published a new security advisory, announcing a patch for CVE-2025-61884. This vulnerability, discovered in E-Business Suite, “is remotely exploitable without authentication, i.e., it may be exploited over a network without the need for a username and password,” Oracle explained. “If successfully exploited, this vulnerability may allow access to sensitive resources.”

It affects versions 12.2.3-12.2.14, Oracle added, stressing that it “always recommends that customers remain on actively-supported versions and apply all Security Alerts and Critical Patch Update security patches without delay”.

Breaking the exploit chain

While the advisory does not mention ShinyHunters or the recent string of breaches, BleepingComputer confirmed, with the help of a few cybersecurity organizations, that the patch does in fact break the exploit chain used by the threat actors.

This is the second patch Oracle released to address flaws in E-Business Suite recently, both of which were allegedly used by threat actors to steal sensitive information.

In early October, executives at various businesses across the United States started receiving extortion emails, claiming to have been sent by ransomware actors known as Cl0p. At the time, Oracle claimed that the attackers were actually exploiting an n-day vulnerability that was patched a few months prior.

However, it soon backtracked and released a patch for CVE-2025-61882, a bug that allowed an unauthenticated attacker with HTTP network access to compromise, and fully take over, the Oracle Concurrent Processing component of E-Business Suite.

In the meantime, other threat actors started targeting E-Business Suite users. Among them, ShinyHunters, notorious hackers part of the Scattered Lapsus$ Hunters collective, responsible for breaches at Qantas, Fujifilm, and others.

Now, with the second patch arriving, we will see if the holes are finally plugged.

Via BleepingComputer

Don’t forget to take a look at our Windows 10 End of Life live updates here

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

You might also like

Read more @ TechRadar

Latest posts

I rode in one of the UK’s first self-driving cars

I never really believed self-driving cars would make it to the UK, so you can imagine my surprise when I found myself clambering into...

OpenAI is piloting group conversations in ChatGPT

OpenAI has started pilot testing group chats within ChatGPT in Japan, New Zealand, South Korea and Taiwan. Like group chats in messaging apps, you...

I compared the OnePlus 15 and iPhone 17 Pro cameras on vacation – and I honestly can’t decide which I prefer

The OnePlus 15 has landed in global markets with a massive 7,300mAh battery and a remarkable 165Hz refresh rate, but less of a fuss...

Cheap-but-good NBN provider Buddy Telco is giving away a free month on all its plans

The Black Friday sales in Australia are running rampant right now. While the official date is still a couple of weeks away, several of...

Planning your weekend viewing? A premium Binge subscription is down to just AU$2 for Black Friday – and I’ve got the show for you

It’s Black Friday sales season, which means the Australian TechRadar team has been working around the clock to uncover the best local discounts on...

Maxton Hall season 2 episode 4 cliffhanger spells fresh trouble for Ruby and James, but that’s not the storyline we should be worried about

Warning: spoilers for Maxton Hall season 2 episode 4 ahead.After last week's three-episode premiere, it should have felt as though Maxton Hall season 2...

What insiders anonymously think about the AI race

This is an excerpt of Sources by Alex Heath, a newsletter about AI and the tech industry, syndicated just for The Verge subscribers once...

Valve’s Steam Machine could fix two massive SteamOS gaming problems – and I’m preparing to ditch Windows 11 for good

Valve has sent waves of excitement across the gaming world with the unveiling of its new mini gaming PC, the Steam Machine, which runs...

How to watch India v South Africa 1st Test 2025: live streams, schedule, teams

Watch India v South Africa on Willow TV via SlingUnblock your stream with NordVPNIndia v South Africa Test series runs 14-26 November1st Test: 14-18...

Don’t wait for Black Friday – Flashforge AD5X drops to just $319 for full-color, high-speed 3D printing

Black Friday sales officially start in two weeks on November 28, but you don’t have to wait to pick up a 3D printer at...