ShinyHunters arrests leave PeopleSoft risk questions unanswered
After ShinyHunters stole FBI employee data via a PeopleSoft flaw and suspected members were arrested in Jordan and the Netherlands, neither Oracle nor the FBI has officially commented. Analysts urge customers to pull the Environment Management Hub and Integration Broker off the public internet and hunt for web shells.
- ShinyHunters claims a second PeopleSoft 0-day with no CVE assigned
- Analyst advises removing Environment Management Hub and Integration Broker from the internet
- Attackers bypassed WAF rules by writing %50 instead of the letter P
- A suspect arrested in Jordan is cooperating with law enforcement
Read next
Security