Close Menu

    Subscribe to Updates

    Get the latest news from tastytech.

    What's Hot

    USA hit Paraguay for four in dream start to their World Cup campaign | World Cup 2026 News

    June 13, 2026

    PeopleSoft 0-day affecting hundreds of organizations steals gigabytes of data

    June 13, 2026

    Activist Investors Really Want Elden Ring Developer To Self-Publish

    June 13, 2026
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram
    tastytech.intastytech.in
    Subscribe
    • AI News & Trends
    • Tech News
    • AI Tools
    • Business & Startups
    • Guides & Tutorials
    • Tech Reviews
    • Automobiles
    • Gaming
    • movies
    tastytech.intastytech.in
    Home»Tech Reviews»PeopleSoft 0-day affecting hundreds of organizations steals gigabytes of data
    PeopleSoft 0-day affecting hundreds of organizations steals gigabytes of data
    Tech Reviews

    PeopleSoft 0-day affecting hundreds of organizations steals gigabytes of data

    gvfx00@gmail.comBy gvfx00@gmail.comJune 13, 2026No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    “While several organizations successfully blocked the activity or remediated the vulnerabilities, others experienced compromise, resulting in stolen data being published on the ShinyHunters DLS,” Mandiant said. (DLS is short for data leak site.)

    An analysis of a bash script left in the staging environment shows the attackers performed reconnaissance on compromised organizations, including mapping the PeopleSoft configurations, viewing process scheduler, and WebLogic server XML configurations. Eventually, the threat actors established an outbound SSH connection to 176.120.22.24, the IP address hosting ShinyHunters’ DLS. The stolen data was first compressed using the zstd tool. The DLS claimed to have recovered 48GB of data from a single victim.



    A partially redacted section of the ShinyHunters’ DLS.

    Credit:
    Mandiant

    A partially redacted section of the ShinyHunters’ DLS.


    Credit:

    Mandiant

    ShinyHunters has been active since at least 2019. Over the past several years, it has executed scores of hacks against some of the world’s largest companies, affecting millions of people downstream. A small sample of victims includes Ticketmaster (through the breach of Snowflake, which hosted the data), Spain’s biggest bank, Santander, and Salesforce (and, through it, Google and, reportedly, many other companies). ShinyHunters uses various techniques to gain initial access, including exploiting cloud misconfigurations and software vulnerabilities, stealing OAuth tokens, supply chain attacks, voice phishing, and other forms of social engineering.

    Mandiant and Rapid7 are providing detailed indicators of compromise. They are also advising PeopleSoft customers on the steps they should take immediately. Given ShinyHunters’ success rate, all PeopleSoft users would do well to heed the calls.

    Table of Contents

    Toggle
      • Related posts:
    • Best Dual-band Wi-Fi 7 Routers: 2025's Top 5
    • Today's NYT Connections Hints, Answers for Jan. 25 #959
    • SNK's Neo Geo console remake works with original cartridges and HDMI

    Related posts:

    Get one year of access for only $35

    Monday Night Football: How to Watch Bills vs. Falcons, Bears vs. Commanders Tonight

    The first permanent Pokémon theme park opens in February 2026

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleActivist Investors Really Want Elden Ring Developer To Self-Publish
    Next Article USA hit Paraguay for four in dream start to their World Cup campaign | World Cup 2026 News
    gvfx00@gmail.com
    • Website

    Related Posts

    Tech Reviews

    The SpaceX IPO Broke Robinhood For Some People

    June 12, 2026
    Tech Reviews

    Facebook and Instagram’s Friday Outages: What We Know

    June 12, 2026
    Tech Reviews

    Not prepared for cloud outages? You should be

    June 12, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Black Swans in Artificial Intelligence — Dan Rose AI

    October 2, 2025194 Views

    Every Clue That Tony Stark Was Always Doctor Doom

    October 20, 2025119 Views

    We let ChatGPT judge impossible superhero debates — here’s how it ruled

    December 31, 202596 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram

    Subscribe to Updates

    Get the latest tech news from tastytech.

    About Us
    About Us

    TastyTech.in brings you the latest AI, tech news, cybersecurity tips, and gadget insights all in one place. Stay informed, stay secure, and stay ahead with us!

    Most Popular

    Black Swans in Artificial Intelligence — Dan Rose AI

    October 2, 2025194 Views

    Every Clue That Tony Stark Was Always Doctor Doom

    October 20, 2025119 Views

    We let ChatGPT judge impossible superhero debates — here’s how it ruled

    December 31, 202596 Views

    Subscribe to Updates

    Get the latest news from tastytech.

    Facebook X (Twitter) Instagram Pinterest
    • Homepage
    • About Us
    • Contact Us
    • Privacy Policy
    © 2026 TastyTech. Designed by TastyTech.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.