Oracle forced to rush on the patch for a zero day exploited in the attacks


  • Oracle has corrected a zero-day Critical Critical defect in the e-business suite, actively exploited by ransomware actors
  • The attackers used compromised messaging accounts to extort the victims; End11 and CL0P can be involved
  • CVE-2025-61882 marked 9.8/10; The exploitation does not require any authentication and allows complete control of the system

Oracle has published a fix to approach zero-day vulnerability in its e-business suite which was actively exploited by ransomware actors.

In early October 2025, cybercriminals began to send sending managers to various American organizations, saying that they have stolen files sensitive to their Oracle E-Business suite systems. At the time, Oracle and the wider cybersecurity community were not certain if violations actually occur, or if it was only a bluff to bring the victims to pay a ransom request.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top