Cybersecurity firm CloudSEK found a threat actor named ‘rose87168’ allegedly selling six million records extracted from Oracle Cloud on March 21. The data included Java KeyStore (JKS) files, encrypted Single Sign-On (SSO) passwords, key files, and enterprise manager JPS keys.
The firm suggested a possible undisclosed vulnerability on login.(region-name).oraclecloud.com, which led to unauthorised access and the data breach.
However, Oracle denied the breach in a statement…
Article Source
https://analyticsindiamag.com/ai-news-updates/cloudsek-and-security-experts-raise-alarm-for-data-breach-oracle-denies-it/