Skip to content
Techzine Global
  • Home
  • Topstories
  • Topics
    • Analytics
    • Applications
    • Collaboration
    • Data Management
    • Devices
    • Devops
    • Infrastructure
    • Privacy & Compliance
    • Security
  • Insights
    • All Insights
    • Agentic AI
    • Analytics
    • Cloud ERP
    • Generative AI
    • IT in Retail
    • NIS2
    • RSAC 2025 Conference
    • Security Platforms
    • SentinelOne
  • More
    • Become a partner
    • About us
    • Contact us
    • Terms and conditions
    • Privacy Policy
  • Techzine Global
  • Techzine Netherlands
  • Techzine Belgium
  • Techzine TV
  • ICTMagazine Netherlands
  • ICTMagazine Belgium
Techzine » News » Security » Oracle hit by second hack, customer credentials stolen
2 min Security

Oracle hit by second hack, customer credentials stolen

Berry ZwetsApril 3, 2025 8:48 amApril 3, 2025
Oracle hit by second hack, customer credentials stolen

Oracle has informed customers about a new hack. Login credentials have been stolen. The FBI and CrowdStrike are investigating the incident in which the attacker attempted extortion.

According to Bloomberg sources, Oracle employees informed certain customers this week that a hacker had accessed a computer system. The attacker managed to obtain usernames, access keys and encrypted passwords.

Extortion

The sources state that the attacker demanded money. This intrusion is unrelated to a previous hack that was reported last month. Information about the stolen login details began to come out last month. An unidentified person attempted to sell online data claimed to have been stolen from Oracle’s cloud servers. After these claims , Oracle initially denied that its cloud service had been hacked.

Legacy environment

This week, Oracle employees admitted to some customers that an attacker gained access to what they call a “legacy environment”. According to Oracle, this system has not been used for eight years, meaning the stolen login credentials would pose little risk.

A third source, also familiar with the intrusion, reports that the stolen data included login credentials for Oracle customers from 2024. This information raises questions about the seriousness of the incident and the potential consequences for customers.

Researchers at cybersecurity company Trustwave have validated the data offered for sale online as coming directly from Oracle. Karl Sigler, senior security research manager at Trustwave SpiderLabs Threat Intelligence, described the stolen data as a “rich dataset” that hackers could use for phishing attacks and possibly for account takeovers.

Tip: Oracle hack: Customers confirm leaked data is real

Tags:

cybersecurity / Extortion / hack / login details / Oracle

"*" indicates required fields

This field is for validation purposes and should be left unchanged.

Stay tuned, subscribe!

Nieuwsbrieven*

Related

Pornhub hack: 200 million user data stolen by ShinyHunters

CISA: Oracle vulnerability is being actively exploited

Emergency patch for vulnerability in Oracle E-Business Suite

More than 100 companies likely affected by Oracle hack

Editor picks

JFrog brings order back to a software supply chain under AI pressure

Generative AI and AI agents are rapidly changing the way software is ...

Nvidia finalizes Intel share purchase, gains billions already

Nvidia has purchased $7.58 billion worth of Intel shares at a low pri...

How close is China’s EUV project to eliminating ASML’s monopoly?

'Manhattan Project' is a clear threat in its infancy

MongoBleed threatens databases, but detection tool is available

Update December 30: Research by The Shadowserver Foundation shows tha...

Techzine.tv

Sophos CEO sees "cybersecurity poverty line": what to do about it?

Sophos CEO sees "cybersecurity poverty line": what to do about it?

Why 90% of Salesforce Agentforce deployments start with service

Why 90% of Salesforce Agentforce deployments start with service

Salesforce reveals its own Agentic IT Service Platform

Salesforce reveals its own Agentic IT Service Platform

Workday Rising EMEA: platform transformation: Pipedream, AI agents and sovereignty

Workday Rising EMEA: platform transformation: Pipedream, AI agents and sovereignty

Read more on Security

Security experts themselves carried out ransomware attacks

Security experts themselves carried out ransomware attacks

Millions earned through BlackCat/ALPHV

Erik van Klinken 18 hours ago
Sophos CEO sees “cybersecurity poverty line”: what to do about it?
Top story

Sophos CEO sees “cybersecurity poverty line”: what to do about it?

We sit down with Sophos CEO Joe Levy during Pax8 Beyond to discuss, among other things, the progress of the S...

Sander Almekinders December 11, 2025
IBM warns of critical flaw in API Connect

IBM warns of critical flaw in API Connect

IBM is urging customers to immediately patch a critical vulnerability in API Connect. The flaw allows attacke...

Erik van Klinken 16 hours ago
Why did so many security vendors abandon MITRE’s stresstest?
Top story

Why did so many security vendors abandon MITRE’s stresstest?

This year, MITRE made headlines primarily because its leading vulnerability database was in danger of being d...

Erik van Klinken December 12, 2025

Expert Talks

Digital sovereignty: from buzzword to business imperative

Digital sovereignty: from buzzword to business imperative

Digital sovereignty has outgrown its niche as an IT concern and is no...

Why specialized LLMs are the future of generativeAI

Why specialized LLMs are the future of generativeAI

ChatGPT and the other GenAI chatbots that have taken the tech world b...

The year of the AI agents: why 2026 is about value, not technology

Microsoft has declared 2026 to be the year of the agent. This is not ...

ARTPEC-9 and Axis Edge Vault: a unified hardware-rooted framework for cybersecure surveillance

As cyber threats grow in scale and complexity, protecting network-con...

Tech calendar

Appdevcon

March 10, 2026 Amsterdam

Webdevcon

March 10, 2026 Amsterdam

Dutch PHP Conference

March 10, 2026 Amsterdam

GITEX ASIA 2026

April 8, 2026 Singapore

SAS Innovate 2026

April 27, 2026 Grapevine

Team '26

May 5, 2026 Anaheim

Whitepapers

Experience Synology’s latest enterprise backup solution

Experience Synology’s latest enterprise backup solution

How do you ensure your company data is both secure and quickly recove...

How to choose the right Enterprise Linux platform?

How to choose the right Enterprise Linux platform?

"A Buyer's Guide to Enterprise Linux" comprehensively analyzes the mo...

Enhance your data protection strategy for 2025

The Data Protection Guide 2025 explores the essential strategies and...

Strengthen your cybersecurity with DNS best practices

The white paper "DNS Best Practices" by Infoblox presents essential g...

Techzine Global

Techzine focusses on IT professionals and business decision makers by publishing the latest IT news and background stories. The goal is to help IT professionals get acquainted with new innovative products and services, but also to offer in-depth information to help them understand products and services better.

Follow us

Twitter
LinkedIn
YouTube

© 2026 Dolphin Publications B.V.
All rights reserved.

Techzine Service

  • Become a partner
  • Advertising
  • About Us
  • Contact
  • Terms & Conditions
  • Privacy Statement