Mandiant Reports ShinyHunters Renews Global PeopleSoft Attacks
Google's Mandiant released a threat intelligence report saying the ShinyHunters hacking group has resumed mass exploitation of a vulnerability in Oracle PeopleSoft enterprise software. An earlier wave from May 27 through June 9 mainly hit universities. Mandiant said the hackers adapted tactics to target organizations that implemented web application firewall rules but did not apply Oracle's security update, with the latest campaign affecting dozens of systems globally in higher education, technology, healthcare, agriculture, transportation and government. ShinyHunters publicly claimed it stole FBI personnel data using the PeopleSoft vulnerability days before the Mandiant report. Reuters has not independently verified the access claim. Prior Reuters reporting said the group exposed names of FBI personnel in sensitive units and obtained medical and psychiatric records. The FBI issued a statement Wednesday saying it is investigating the reported breach; one wire quotes the FBI as "aggressively investigating," another as "actively investigating." Oracle did not respond to requests for comment.




