A few days ago Oracle, via the media, blamed their own customers for not installing a July security update.. then when the media coverage stopped, quietly released a new security update for the actual exploited vulnerability. 🥴
1 Boost
0 Likes
Here's the original Oracle explanation - before the post mysteriously disappeared (even from Internet Archive etc).
The details for the Oracle hack are as embarrassing as you'd imagine..
../
https://labs.watchtowr.com/well-well-well-its-another-day-oracle-e-business-suite-pre-auth-rce-chain-cve-2025-61882well-well-well-its-another-day-oracle-e-business-suite-pre-auth-rce-chain-cve-2025-61882/