ShinyHunters claims it hacked 100 orgs by exploiting an Oracle PeopleSoft 0-day
2026-06-11T19:24:20Z•e3fb53c84169f5499e3f401d96ef7a6301fca381eeefd405010a1a9554cfb37f
BitLocker bypassCheck Point VPNChina-linkedChrome zero-dayCisco SD-WANGitHubHTTP/2 DoSIvanti SentryMiasmaNSO GroupOracle PeopleSoftShinyHuntersWindowsWorld Food Programmecredential theftdata breachnation-state activitynpm auto-run scriptsphishingransomwareremote code executionsupply-chainuniversity breachzero-day
What happened
A The Register roundup reporting a wave of active zero‑day exploitations and large-scale breaches: ShinyHunters claims an Oracle PeopleSoft 0‑day hit ~100 organisations; multiple Windows 0‑days (including a claimed BitLocker bypass) are public; Ivanti Sentry has critical unauthenticated RCEs; Check Point VPN and Cisco SD‑WAN 0‑days were being actively exploited prior to patches. The feed also highlights supply‑chain malware (Miasma), high‑impact data breaches (World Food Programme, university/career‑platform incidents), nation‑state activity and credential theft campaigns, plus defensive/oper‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- e3fb53c84169f5499e3f401d96ef7a6301fca381eeefd405010a1a9554cfb37f
- Enrichment time
- 2026-06-11T19:24:20Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.