Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign

Summary

The extortion group ShinyHunters has launched new attacks targeting the Oracle PeopleSoft vulnerability, CVE-2026-35273. They have modified their exploit to carry out these fresh campaigns.

IFF Assessment

FOE

This article reports on an active extortion campaign by a threat actor, posing a direct risk to organizations and their data.

Severity

9.8 Critical

CISA KEV: Listed as actively exploited. Federal patch due: June 15, 2026. Known ransomware use: Known.

Defender Context

Defenders should be aware of ShinyHunters' continued targeting of Oracle PeopleSoft, especially with modified exploits. Prompt patching and robust network monitoring are crucial to detect and prevent exploitation of such vulnerabilities.

Read Full Story →