Skip to content

Urgency: Patch Now! Oracle E-Business Suite Hit by Severe Cyber Attack

Cybercriminals are exploiting a critical Oracle E-Business Suite vulnerability. The FBI warns of an 'immediate patch' necessity to prevent data breaches.

This picture shows a man seated and working on a laptop in a store
This picture shows a man seated and working on a laptop in a store

Urgency: Patch Now! Oracle E-Business Suite Hit by Severe Cyber Attack

Oracle E-Business Suite customers in the United States are urged to take immediate action due to a critical security vulnerability (CVE-2025-61882) currently being exploited by cybercriminals. The vulnerability, rated 9.8 out of 10 in severity, allows remote access without authentication and is being described as an 'immediate patch' necessity for my business by the FBI.

The vulnerability impacts the widely-used Oracle E-Business Suite, which manages finance, human resources, and supply chain functions for businesses. Oracle has issued a security alert, advising customers to isolate potentially affected servers and monitor threat intelligence channels. Patches are available from an October 2023 update and a new patch issued on Saturday. The Austrian Cyber Security Agency and Oracle have warned that attackers are actively exploiting this flaw in businesses.

Cybersecurity agencies in the U.K. and Singapore, along with the U.S. government, have published advisories with similar guidance for businesses. The U.S. has ordered federal civilian agencies to patch the vulnerability by October 28. Mandiant's chief technology officer has tied this vulnerability to a campaign by the cybercriminal group Clop, which is currently attempting to extort corporate executives in businesses. Clop has previously exploited vulnerabilities in the Oracle E-Business Suite to steal data from multiple victims in businesses.

Oracle E-Business Suite customers should prioritize patching the CVE-2025-61882 vulnerability and follow the guidance provided by Oracle and cybersecurity agencies to protect their business. Monitoring threat intelligence channels and isolating potentially affected servers are crucial steps to mitigate the risk of data breaches for businesses. The FBI's warning underscores the urgency of this situation, as cybercriminals are likely already exploiting this vulnerability in businesses.

Read also:

Latest