• About
  • Advertise
  • Privacy & Policy
  • Contact
Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

CISA Issues Threat Warning After ‘Potential’ Oracle Cloud Breach

CRN by CRN
April 17, 2025
Home News
Share on FacebookShare on Twitter


While CISA said it has no specifics on the reported Oracle incident, the federal cybersecurity agency warned of a possibility of increased credential risks.

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning about the potential for increased security risks in response to reports of a compromise impacting Oracle Cloud customers.

Oracle has denied that its Oracle Cloud platform was breached and CISA indicated it has no details confirming recent media reports. The advisory from CISA refers only to a “potential legacy Oracle Cloud compromise.”

[Related: 10 Major Ransomware Attacks And Data Breaches In 2024]

CRN has reached out to Oracle for comment.

Earlier this month, Bloomberg reported that Oracle had privately disclosed to customers that a threat actor has been discovered to have compromised a “legacy” environment, in a breach that has included the theft of certain log-in credentials.

According to the report, which cited individuals familiar with the matter, the impacted environment has not been used in eight years and the affected credentials are “old.”

In late March, BleepingComputer reported about a threat actor who claimed to have stolen data from Oracle Cloud servers. Oracle repeatedly denied that a cloud incident had occurred in statements to media outlets.

“There has been no breach of Oracle Cloud (OCI). The published credentials are not for OCI. No OCI customers experienced a breach or lost any data,” an Oracle spokesperson said in a statement provided to CRN on March 27.

In its advisory Wednesday, CISA suggested it felt obligated to warn Oracle Cloud customers about potential risks even without having confirmation of the media reports.

“CISA is aware of public reporting regarding potential unauthorized access to a legacy Oracle cloud environment,” the agency said in the advisory. “While the scope and impact remains unconfirmed, the nature of the reported activity presents potential risk to organizations and individuals, particularly where credential material may be exposed, reused across separate, unaffiliated systems, or embedded (i.e., hardcoded into scripts, applications, infrastructure templates, or automation tools).”

Notably, “when credential material is embedded, it is difficult to discover and can enable long-term unauthorized access if exposed,” CISA said.

Credentials—which can include usernames, passwords, email addresses, authentication tokens and encryption keys—can “pose significant risk to enterprise environments” when exposed, the agency added. “Threat actors routinely harvest and weaponize such credentials.”

The early April report from Bloomberg indicated that an unspecified number of customers were notified by Oracle about the breach.

The compromise reportedly affected credential data including usernames and passkeys as well as encrypted passwords.

In addition, Bloomberg reported that a person familiar with the incident contradicted Oracle’s statement that the stolen data was from older systems, saying that Oracle log-in credentials from as recently as last year were among those affected.

The attack also included a demand by the attacker for an extortion payment, according to the report.



Source link

Tags: Cloud PlatformsCloud SecurityCyberattacksCybersecurityData breaches
CRN

CRN

Next Post
Huawei Zekâyı Geliştirmek için Beş Havacılık Çözümünü Tanıttı

Huawei Zekâyı Geliştirmek için Beş Havacılık Çözümünü Tanıttı

Recommended.

The Delirious, Violent, Impossible True Story of the Zizians

The Delirious, Violent, Impossible True Story of the Zizians

February 21, 2025
Treasury yields are flat as investors digest jobless claims data

Treasury yields are flat as investors digest jobless claims data

December 27, 2024

Trending.

Beyond the hook: How phishing is evolving in the world of AI | Computer Weekly

Beyond the hook: How phishing is evolving in the world of AI | Computer Weekly

May 7, 2025
Die innovativen Lösungen von Huawei Digital Power für alle Szenarien der Netzbildung beleuchten die Intersolar Europe

Die innovativen Lösungen von Huawei Digital Power für alle Szenarien der Netzbildung beleuchten die Intersolar Europe

May 11, 2025
Bitcoin back above 0,000: Financial planning icon Ric Edelman reacts to the crypto ETF boom

Bitcoin back above $100,000: Financial planning icon Ric Edelman reacts to the crypto ETF boom

May 10, 2025
America is failing its youngest investors, warns personal finance guru Ric Edelman

America is failing its youngest investors, warns personal finance guru Ric Edelman

May 10, 2025
With foreign tourists boycotting the U.S., businesses brace for falling sales

With foreign tourists boycotting the U.S., businesses brace for falling sales

May 10, 2025

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

en en
ar Arabiczh-CN Chinese (Simplified)nl Dutchen Englishfr Frenchde Germanit Italianpt Portugueseru Russianes Spanish
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Blogs

Copyright © 2025 | Powered By Porpholio