Oracle Warns Customers of Critical PeopleSoft Attack After Hundreds of Servers Hacked in Apparent Data Theft Attacks ShinyHunters


  • ShinyHunters likely behind CVE-2026-35273 attack against Oracle PeopleSoft
  • Versions 8.61 and 8.62 affected, users urged to take “immediate action”
  • Google’s Mandiant notified over 100 organizations

Oracle PeopleSoft servers, used by universities, businesses and public sector organizations, are the target of a new attack from extortion group ShinyHunters, researchers have revealed.

The attackers claim to have compromised more than 100 organizations and exfiltrated data from approximately 300 PeopleSoft instances, exploiting a vulnerability identified as CVE-2026-35273.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top