Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign
Summary
The extortion group ShinyHunters has launched new attacks targeting the Oracle PeopleSoft vulnerability, CVE-2026-35273. They have modified their exploit to carry out these fresh campaigns.
IFF Assessment
FOE
This article reports on an active extortion campaign by a threat actor, posing a direct risk to organizations and their data.
Severity
9.8
Critical
CISA KEV: Listed as actively exploited. Federal patch due: June 15, 2026. Known ransomware use: Known.
Defender Context
Defenders should be aware of ShinyHunters' continued targeting of Oracle PeopleSoft, especially with modified exploits. Prompt patching and robust network monitoring are crucial to detect and prevent exploitation of such vulnerabilities.