Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

Posted on November 21, 2025November 21, 2025 By CWS

The Cl0p ransomware group has claimed duty for infiltrating Broadcom’s inside techniques as a part of an ongoing exploitation marketing campaign focusing on Oracle E-Enterprise Suite vulnerabilities.

The hack makes use of a crucial zero-day vulnerability (CVE-2025-61882) rated 9.8 on the CVSS scale, permitting attackers to execute arbitrary code with out authentication.​

Broadcom, a serious semiconductor and infrastructure software program supplier, turns into the most recent high-profile sufferer in a large extortion marketing campaign that started in late September 2025.

Zero-Day Flaw Permits Unauthorized Entry

The menace actors declare to have accessed inside enterprise useful resource planning (ERP) archives, design documentation, and delicate semiconductor information.

Given Broadcom’s affect throughout telecommunications, knowledge facilities, and AI accelerator manufacturing. The potential publicity of inside documentation raises issues for provide chain integrity and companion ecosystems.​

Safety researchers from Google Risk Intelligence Group and Mandiant traced the underlying breach exercise again to July 10, 2025, with confirmed exploitation starting August 9, 2025, weeks earlier than Oracle launched patches.

The Cl0p group gathered data and moved by sufferer networks earlier than beginning a coordinated electronic mail blackmail marketing campaign in September, hitting executives at many corporations on the similar time.

warning and cyber situational consciousness

The assault exploited Oracle E-Enterprise Suite’s Enterprise Intelligence Writer integration throughout the Concurrent Processing element, granting attackers full system management.

Cl0p supplemented the zero-day with extra beforehand patched vulnerabilities to maximise its foothold throughout enterprise networks.​

The broader marketing campaign has reportedly compromised a minimum of 29 organizations, based on latest postings on the Cl0p data-leak web site.

The attackers used hacked third-party electronic mail accounts bought from infostealer markets to bypass spam filters and make their extortion emails seem extra plausible.

Oracle launched emergency patches in October 2024, although organizations operating older E-Enterprise Suite variations stay susceptible if patches haven’t been utilized.

Safety specialists suggest speedy patching and enhanced monitoring for suspicious POST requests to the/OA_HTML/SyncServlet endpoints, that are high-fidelity compromise indicators.

Comply with us on Google Information, LinkedIn, and X for day by day cybersecurity updates. Contact us to characteristic your tales.

Cyber Security News Tags:0Day, Allegedly, Breached, Broadcom, Clop, EBusiness, Hack, Ransomware, Suite

Post navigation

Previous Post: Critical Grafana Vulnerability Let Attackers Escalate Privilege
Next Post: SquareX and Perplexity Quarrel Over Alleged Comet Browser Vulnerability

Related Posts

4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign 4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign Cyber Security News
New Study Shows GPT-5.2 Can Reliably Develop Zero-Day Exploits at Scale New Study Shows GPT-5.2 Can Reliably Develop Zero-Day Exploits at Scale Cyber Security News
175,000 Exposed Ollama Hosts Enable Code Execution and External System Access 175,000 Exposed Ollama Hosts Enable Code Execution and External System Access Cyber Security News
Hackers Exploit DFIR Tool Velociraptor In Ransomware Attacks Hackers Exploit DFIR Tool Velociraptor In Ransomware Attacks Cyber Security News
Critical IBM API Connect Vulnerability Let Attackers Bypass Logins Critical IBM API Connect Vulnerability Let Attackers Bypass Logins Cyber Security News
WebRAT Malware via GitHub Repositories Claim as Proof-of-concept Exploits to Attack Users WebRAT Malware via GitHub Repositories Claim as Proof-of-concept Exploits to Attack Users Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Muddled Libra Exploits VMware vSphere in Cyber Attack
  • Feiniu NAS Devices Targeted in Major Botnet Attack
  • Rapid SSH Worm Exploits Linux Systems with Credential Stuffing
  • Odido Telecom Hacked: 6.2 Million Accounts Compromised
  • Lazarus Group Targets npm and PyPI with Malicious Packages

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News