ShinyHunters linked to exploitation of critical flaw in Oracle PeopleSoft | Cybersecurity Dive

The ShinyHunters threat group has exploited a critical zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft to target over 100 organizations, primarily in the higher education sector. Mandiant reports that attackers used this remote-code execution flaw to compromise systems and steal sensitive data for potential phishing and extortion.

Edward Kiledjian @ekiledjian