Skip to content
Email: info@itamindia.com
Login/Register
iTAM India - IT Asset Management
  • Home
  • About
    • About ITAM India
    • Teaching Faculty
    • ITAM India FAQs
    • Careers
    • Contact
  • Courses
    • Instructor Led Online
    • On-demand Courses
  • Certification
    • ITAM India Credentials
    • OEM Practice Test
  • Resource
    • ITAM Glossary
    • Sys Admin Glossary
    • News
    • Blog
  • My Account
0

Currently Empty: ₹0.00

Continue shopping

iTAM India - IT Asset Management
  • Home
  • About
    • About ITAM India
    • Teaching Faculty
    • ITAM India FAQs
    • Careers
    • Contact
  • Courses
    • Instructor Led Online
    • On-demand Courses
  • Certification
    • ITAM India Credentials
    • OEM Practice Test
  • Resource
    • ITAM Glossary
    • Sys Admin Glossary
    • News
    • Blog
  • My Account

Oracle says its cloud was compromised

Home » Blog » Oracle says its cloud was compromised
Breadcrumb Abstract Shape
Breadcrumb Abstract Shape
Breadcrumb Abstract Shape
News

Oracle says its cloud was compromised

  • April 29, 2025
  • Com 0

Oracle has briefed some customers about a successful intrusion into its public cloud, as well as the theft of their data, after previously denying it had been compromised.

Claims of a cyberattack on Oracle’s cloud service emerged in late March when a miscreant using the handle “rose87168” boasted of cracking into two of Big Red’s login servers for customers and harvesting around six million records, which included clients’ private security keys, encrypted credentials, and LDAP entries. The netizen put the info, involving thousands of organizations, up for sale on a cybercrime forum.

The Safra Catz-run database giant swore blind the claims were false. It turns out the only thing false were the denials.

Multiple information security experts analyzed samples of the stolen data, shared by rose87168 as proof of their heist, and concluded Oracle’s Cloud Classic product was indeed compromised by the thief, likely by exploiting Oracle-hosted login servers that weren’t patched against CVE-2021-35587, a vulnerability in Oracle Access Manager, a product in the Oracle Fusion Middleware suite. Oracle hadn’t patched a hole in its own software on its own systems, leading to the theft of info. No wonder it kept quiet.

The data thief even created a text file in early March on login.us2.oraclecloud.com containing their email address to show they had access at one point.

Now, two of the IT titan’s customers have said Oracle contacted them to quietly discuss the theft of their data from its cloud offering, and had enlisted CrowdStrike to straighten out this mess. The antivirus slinger declined to confirm this, “respectfully” referring The Register to Oracle. It’s said the FBI is also probing the intrusion.

Parts of this article appeared earlier in The Register 

Share on:
Sheshagiri Anegondi

Sheshagiri helps companies reduce Software License & Support costs through deployment optimization and risk management in software license compliance audits. His core skills are Software License Management, Enterprise Software Sales & Sales Management.

Oracle hopes talk of cloud data theft dies off
Oracle Cloud Breaches Lead to Lawsuits

News

  • Toshiba Ditches VMware For Nutanix
  • Apple is betting everything on this innovation
  • India’s chipmaking ambitions hurt by Zoho’s no-go
  • Tim Cook Confirms More Apple Stores Coming To India In 2025
  • 49% Indian Employees Want To Switch Jobs Amid Growing Work Stress On A Daily Basis: Report
View All
License Compliance

Tags

Design Development Future licensing microsoft News Software
iTAM India - IT Asset Management

Empowering India with accredited education in SAM, HAM, ITOM, InfoSec and FinOps

Address: 408, Vashi Infotech Park, Sector 30A, Vashi, Navi Mumbai 400703
Email: info@itamindia.com

ITAM India

  • About ITAM India
  • Careers
  • Instructor Led Online Courses
  • On-Demand Courses
  • ITAM India Certified Credentials
  • OEM Credentials Practice Tests
  • FAQs

Learn

  • A listing of ITAM Skills
  • Network Monitoring
  • Hardware Asset Management
  • Software License Management
  • Software Asset Management
  • Information Security
  • CMDB
  • FinOps
  • Vendor Management

Contacts

Enter your email address to register to our newsletter subscription

Icon-facebook Icon-linkedin2 Icon-instagram Icon-twitter Icon-youtube
Copyright 2025 ITAM India. All Rights Reserved.
iTAM India - IT Asset Management
Cancel Preloader