Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Cl0P Ransomware Group Allegedly Claims Breach of Entrust in Oracle 0-Day EBS Hack

Cl0P Ransomware Group Allegedly Claims Breach of Entrust in Oracle 0-Day EBS Hack

Posted on November 14, 2025November 14, 2025 By CWS

The infamous Cl0P ransomware group has claimed accountability for breaching digital safety agency Entrust, exploiting a important zero-day vulnerability in Oracle E-Enterprise Suite (EBS).

The assault, tied to CVE-2025-61882, marks one other high-profile sufferer in Cl0P’s relentless assault on organizations utilizing Oracle’s enterprise software program.

Cl0P, identified for high-impact extortion schemes, introduced the breach on their darkish net leak website earlier this week. In accordance with the publish, attackers gained unauthorized entry to Entrust’s techniques through an unpatched flaw that enables distant code execution (RCE) in Oracle EBS environments.

Clop ransomware declare

The vulnerability, rated CVSS 9.8 for its ease of exploitation with out authentication, impacts a number of variations of EBS, a broadly used platform for monetary and provide chain administration. Oracle patched it in October 2025’s Vital Patch Replace, however delayed adoption has left many companies uncovered.

Entrust, a supplier of identification and entry administration options, confirmed the incident in a quick assertion, noting that no buyer knowledge seems compromised.

“We’re investigating the matter with urgency and have carried out enhanced safety measures,” the corporate mentioned. Nevertheless, cybersecurity consultants warn that the breach may undermine belief in Entrust’s companies, given its function in securing digital certificates and authentication for international enterprises.

This isn’t Cl0P’s first rodeo with CVE-2025-61882. Since disclosing the zero-day in September 2025, the group has listed over a dozen victims, together with manufacturing giants and monetary establishments.

Their tactic exfiltrating knowledge earlier than encryption has netted thousands and thousands in ransoms whereas pressuring targets by public shaming. Analysts at Mandiant attribute the spree to Cl0P’s shift towards “massive recreation searching,” concentrating on vulnerabilities in legacy enterprise techniques.

The breach highlights persistent dangers in provide chain safety. Organizations counting on Oracle EBS ought to prioritize patching and conduct vulnerability scans instantly. As Cl0P’s checklist grows, the incident underscores the necessity for proactive risk searching in an period of subtle ransomware operations.

Comply with us on Google Information, LinkedIn, and X for each day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:0Day, Allegedly, Breach, Cl0p, Claims, EBS, Entrust, Group, Hack, Oracle, Ransomware

Post navigation

Previous Post: Google Says Chinese ‘Lighthouse’ Phishing Kit Disrupted Following Lawsuit  
Next Post: Anthropic Says Claude AI Powered 90% of Chinese Espionage Campaign

Related Posts

Senator Calls for FTC Investigation into Microsoft’s Use of Outdated RC4 Encryption and Kerberoasting Vulnerabilities Senator Calls for FTC Investigation into Microsoft’s Use of Outdated RC4 Encryption and Kerberoasting Vulnerabilities Cyber Security News
Cyberattack Targets Claude AI with Infostealer Malware Cyberattack Targets Claude AI with Infostealer Malware Cyber Security News
CrowdStrike Falcon Windows Sensor Vulnerability Let Attackers Execute Code and Delete Files on Host CrowdStrike Falcon Windows Sensor Vulnerability Let Attackers Execute Code and Delete Files on Host Cyber Security News
New Android Malware ‘Fantasy Hub’ Intercepts SMS Messages, Contacts and Call Logs New Android Malware ‘Fantasy Hub’ Intercepts SMS Messages, Contacts and Call Logs Cyber Security News
Teaching Claude to Cheat Reward Hacking Coding Tasks Makes Them Behave Maliciously in Other Tasks Teaching Claude to Cheat Reward Hacking Coding Tasks Makes Them Behave Maliciously in Other Tasks Cyber Security News
The Most Active RAT Uses New Stagers and Loaders to Bypass Defenses The Most Active RAT Uses New Stagers and Loaders to Bypass Defenses Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark