Washington Post confirms nearly 10,000 affected in Oracle EBS breach linked to Clop

November 13, 2025 The Washington Post has confirmed that nearly 10,000 current and former employees and contractors had personal information stolen after attackers breached the newspaper’s Oracle E-Business Suite environment earlier this year.

In a filing with Maine’s attorney general, the Post said it was contacted on September 29 by an individual claiming to have accessed its Oracle system. An internal investigation later verified the intrusion and linked it to a previously unknown Oracle EBS vulnerability that has been exploited across multiple organizations worldwide.

The filing says attackers accessed the system between July 10 and August 22, stealing data that included names, bank account numbers, routing numbers, Social Security numbers and tax identification numbers. The Post determined the scope of the breach on October 27 and began notifying almost 10,000 affected individuals. Those whose Social Security numbers or tax IDs were taken have been offered identity-protection services.

The incident is part of a larger campaign attributed to the Clop ransomware group, which has posted alleged victims on its leak site. Confirmed disclosures so far include GlobalLogic, a Hitachi-owned engineering firm that reported more than 10,000 staff impacted, and Allianz UK. Researchers also expect more announcements in the coming weeks as organizations review their Oracle logs.

Estimates of the scale of the campaign vary widely. Some security analysts say “dozens” of companies have been affected, while others warn the total may exceed 100 based on the number of EBS environments seen communicating with attacker infrastructure.

Oracle acknowledged the flaw in late October when it issued emergency patches but has not said how many customers were affected or how long the bug had been exploited. Researchers believe the vulnerability may have been used at scale for several months.

 

Top Stories

Related Articles

December 23, 2025 Thank you. None of what follows happens without your support. Hashtag Trending has now passed three million more...

December 23, 2025 Editor's Notes: This is the first of two articles reflecting on the year but Yogi Schulz. Schulz' more...

December 23, 2025 Spotify says it has identified the user account behind what it describes as “unlawful” scraping of its more...

December 23, 2025 Waymo temporarily suspended its self-driving taxi service in San Francisco over the weekend after a citywide power more...

Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com
Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn