ShinyHunters claims it hacked 100 orgs by exploiting an Oracle PeopleSoft 0-day

2026-06-11T19:24:20Ze3fb53c84169f5499e3f401d96ef7a6301fca381eeefd405010a1a9554cfb37f
BitLocker bypassCheck Point VPNChina-linkedChrome zero-dayCisco SD-WANGitHubHTTP/2 DoSIvanti SentryMiasmaNSO GroupOracle PeopleSoftShinyHuntersWindowsWorld Food Programmecredential theftdata breachnation-state activitynpm auto-run scriptsphishingransomwareremote code executionsupply-chainuniversity breachzero-day

What happened

A The Register roundup reporting a wave of active zero‑day exploitations and large-scale breaches: ShinyHunters claims an Oracle PeopleSoft 0‑day hit ~100 organisations; multiple Windows 0‑days (including a claimed BitLocker bypass) are public; Ivanti Sentry has critical unauthenticated RCEs; Check Point VPN and Cisco SD‑WAN 0‑days were being actively exploited prior to patches. The feed also highlights supply‑chain malware (Miasma), high‑impact data breaches (World Food Programme, university/career‑platform incidents), nation‑state activity and credential theft campaigns, plus defensive/oper‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
e3fb53c84169f5499e3f401d96ef7a6301fca381eeefd405010a1a9554cfb37f
Enrichment time
2026-06-11T19:24:20Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · ShinyHunters claims it hacked 100 orgs by exploiting an Oracle PeopleSoft 0-day · Baitaphish