{
  "id": 10135358,
  "title": "ShinyHunters hackers expanded attacks on Oracle’s PeopleSoft, Google says",
  "url": "https://urgent.news/2026/09/27/shinyhunters-hackers-expanded-attacks-on-oracles-peoplesoft-google",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-09-27T04:01:59.000Z",
  "source": {
    "name": "The Indian Express",
    "slug": "the-indian-express",
    "url": "https://indianexpress.com/article/technology/tech-news-technology/shinyhunters-hackers-expanded-attacks-on-oracles-peoplesoft-google-says-10895753/"
  },
  "original_language": "en",
  "account": "Google's cybersecurity unit reported on Friday that the hacking group ShinyHunters has resumed a campaign targeting a security flaw in Oracle's PeopleSoft software, following earlier attacks in June. Security firm Mandiant revealed this in a threat intelligence report published days after ShinyHunters claimed responsibility for stealing FBI personnel data. The evolving nature of these attacks is expected to cause concern for organizations that depend on PeopleSoft for critical operations, such as human resources management.\n\nShinyHunters exploited a vulnerability in Oracle's PeopleSoft enterprise software between May 27 and June 9, primarily affecting universities. The hackers adapted their tactics to bypass defensive measures recommended after the initial attacks and targeted organizations that implemented web application firewall rules but failed to install the necessary Oracle patch to fix the vulnerability. Although Mandiant did not disclose specific victim information, it stated that the latest attack impacted systems across various industries, including higher education, technology, healthcare, agriculture, transportation, and government.\n\nShinyHunters allegedly obtained FBI personnel data using the exploited PeopleSoft vulnerability. However, Reuters has been unable to verify this claim. Oracle has not yet responded to inquiries regarding the issue. In a statement released on Wednesday, the Federal Bureau of Investigation confirmed that it is conducting a thorough investigation into the reported breach. ShinyHunters reportedly accessed sensitive FBI personnel records, including names of employees in sensitive units, as well as medical and psychiatric information, according to Reuters earlier.",
  "summary": null,
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 4,
    "also_reported_by": [
      {
        "outlet": "Channel News Asia",
        "title": "ShinyHunters hackers expanded attacks on Oracle's PeopleSoft, Google says",
        "url": "https://urgent.news/2026/09/26/shinyhunters-hackers-expanded-attacks-on-oracles-peoplesoft-google",
        "published": "2026-09-26T02:05:48.000Z"
      },
      {
        "outlet": "Investing.com",
        "title": "ShinyHunters hackers expanded attacks on Oracle’s PeopleSoft, Google says",
        "url": "https://urgent.news/2026/09/26/shinyhunters-hackers-expanded-attacks-on-oracles-peoplesoft-google-9887109",
        "published": "2026-09-26T02:13:29.000Z"
      },
      {
        "outlet": "Techmeme",
        "title": "Google says ShinyHunters has renewed \"mass exploitation\" of a flaw in Oracle's PeopleSoft; ShinyHunters has said it accessed FBI data using a flaw in PeopleSoft (Reuters)",
        "url": "https://urgent.news/2026/09/26/google-says-shinyhunters-has-renewed-mass-exploitation-of-a-flaw-in",
        "published": "2026-09-26T02:51:03.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}