Urgent.News

What's breaking now, across thousands of outlets.

Tech

Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells

Google is warning of renewed mass exploitation of a known security vulnerability in Oracle PeopleSoft as part of a campaign targeting multiple sectors globally. The ShinyHunters-linked activity involves the weaponization of CVE-2026-35273 (CVSS score: 9.8), a critical security flaw that could result in unauthenticated remote code execution. The vulnerability was first exploited as a zero-day

Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells

We haven't written up this one. The Hacker News has the full story — the link below goes straight to it.

Read the original at thehackernews.com →

More in Tech

The Snippet List I Hand to Contractors Before Their First Commit

When a contractor joins a project for a week or a sprint, the onboarding problem isn't the code — it's the context . The code is in the repo.

  • Contractors receive 10-20 specific commands on first day
  • Snippet list replaces traditional wiki onboarding pages
  • Terminal serves as primary onboarding medium

More from Saturday 26 September →