Oracle Denies Breach After Hacker Claims to Have Stolen 6 Million Records

Share post:

Oracle is denying claims that its cloud systems were breached after a hacker alleged they had stolen six million user records. The hacker, using the alias “rose87168,” posted on dark web forums claiming they had accessed encrypted passwords, Single Sign-On (SSO) credentials, Java keystore files, and other sensitive configuration data from Oracle’s cloud login servers.

In a public statement, Oracle said, “There has been no breach of Oracle Cloud. The published credentials are not for the Oracle Cloud. No Oracle Cloud customers experienced a breach or lost any data.”

The hacker reportedly demanded 100,000 Monero (XMR)—a privacy-focused cryptocurrency known for being difficult to trace—in exchange for the data and instructions on how to fix the claimed vulnerability. After Oracle did not respond, the data was offered for sale. The hacker also invited companies to pay to have their employee records removed from the dataset before it was sold.

The authenticity of the stolen data has not been independently verified. Oracle continues to insist that its systems remain secure and that no customer data has been compromised.

However, Bleeping Computer, which first reported the story, was given a link showing a .txt file uploaded to what appears to be Oracle’s cloud servers. The outlet has asked Oracle to explain how the file was placed there without having access to the server. As of the time of publication, Oracle had not responded.

 

Link to the .txt file https://web.archive.org/web/20250301161517/http:/login.us2.oraclecloud.com/oamfed/x.txt?x

SUBSCRIBE NOW

Related articles

US Defence Contractor Fined 4.6 Million For Failing To Meet Cyber Security Requirements.

A U.S. defence contractor, MORSE Corp, has agreed to pay $4.6 million to settle allegations of failing to...

Tech Aide on U.S. Government Efficiency Team Linked to Cybercrime Group

A 19-year-old staffer working on the U.S. Department of Government Efficiency (DOGE) initiative has been linked to a...

Top U.S. Security Officials Have Even More Data Exposed Through Public Apps, Chats, and Data Leaks

A new investigation has revealed that personal information belonging to senior U.S. security officials — including active phone...

Trump Administration Officials Accidentally Text Journalist Secret U.S. War Plans

The Atlantic’s editor-in-chief Jeffrey Goldberg says he was mistakenly added to a Signal group chat discussing classified U.S....

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways