Close Menu
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    • Blogging
    • SEO & Digital Marketing
    • WiFi / Internet & Networking
    • Cybersecurity
    • Tech Tools & Mobile / Apps
    • Privacy & Online Earning
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    Home»Cybersecurity»Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact
    Cybersecurity

    Oracle EBS Hack: Only 4 Corporate Giants Still Silent on Potential Impact

    adminBy adminMarch 16, 2026No Comments3 Mins Read
    Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
    Oracle E-Business Suite hack
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Several global giants listed as victims of the recent hacking campaign targeting Oracle E-Business Suite (EBS) customers have remained mum on the impact of the cybersecurity incident.

    The Cl0p ransomware and extortion group has taken credit for the EBS hacking campaign, which involved exploiting zero-day vulnerabilities to access data stored by organizations in Oracle’s enterprise management software. The compromised data was then leveraged for extortion.

    While Cl0p serves as the public-facing extortion brand for the campaign, the cybersecurity community believes the operation may have been driven by a cluster of threat actors, most notably FIN11.   

    The hackers have listed more than 100 alleged victims of the Oracle EBS campaign on the Cl0p leak website, including organizations in sectors such as technology, telecommunications, software, heavy industry, manufacturing, engineering, retail, consumer goods, energy, utilities, media, finance, and entertainment.

    For most of the victims, the cybercriminals published torrent files pointing to information allegedly stolen from their systems. This indicates that these victims have refused to pay a ransom.

    A majority of the large organizations targeted in the campaign have issued a public statement confirming a data breach. Many claimed that the impact of the incident is limited, but still notified affected individuals about the potential risks.

    Advertisement. Scroll to continue reading.

    However, a handful of very large companies do not appear to have issued any public statements on the matter, neither to confirm nor deny being hit, nor even to say that an investigation is being conducted. 

    This includes semiconductor and infrastructure software company Broadcom, engineering and construction firm Bechtel, cosmetics group Estée Lauder Companies, and medical devices and healthcare solutions provider Abbott Laboratories.

    They were all listed on the Cl0p website on or around November 20, 2025. 

    It may take several months and even as much as a year for companies to investigate data breaches and determine their full extent. However, major companies typically acknowledge at least that an investigation is ongoing.

    Broadcom, Bechtel, Estée Lauder, and Abbott have not responded to repeated requests for comment.

    Data leaked by hackers

    SecurityWeek has not downloaded any of the leaked data, but has conducted a brief metadata and file-tree analysis of data allegedly obtained from some of the larger companies named on the Cl0p website and found that the files indeed originate from an Oracle EBS environment.

    In the case of Broadcom, the cybercriminals made public more than 2TB of archives allegedly storing files stolen from the company. The Estée Lauder torrent file points to 870GB of archive files. 

    At the time of writing, the torrents pointing to Bechtel and Abbott files are still available, but no data could be retrieved for analysis. However, that does not mean the files are no longer accessible to cybercriminals, as they may also be circulated privately on underground forums.

    On the one hand, cybercrime groups like Cl0p frequently exaggerate the scope of their breaches, prompting many companies to quickly issue statements denying or downplaying the allegations to reassure customers and stakeholders that any impact was limited. 

    Moreover, if no regulated data (such as health information, Social Security numbers, or payment details) was compromised, companies face no legal obligation to disclose the incident publicly. If the breach did not qualify as material, there is also no requirement under SEC rules to report it to investors.

    On the other hand, some organizations may deliberately maintain silence for strategic, PR, and legal reasons. Even acknowledging an ongoing investigation could invite lawsuits, short-seller pressure, or additional regulatory scrutiny.

    Related: Michelin Confirms Data Breach Linked to Oracle EBS Attack

    Related: Loblaw Data Breach Impacts Customer Information

    Related: Starbucks Data Breach Impacts Employees

    Corporate EBS Giants Hack impact Oracle potential Silent
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    Previous ArticleBlocking the Internet Archive Won’t Stop AI, But It Will Erase the Web’s Historical Record
    Next Article You Can Finally Get an Apple Watch Ultra 2 for Under $500
    admin
    • Website

    Related Posts

    Telus Digital confirms hack as ShinyHunters claims credit for massive data theft

    March 16, 2026

    Stryker attack wiped tens of thousands of devices, no malware needed

    March 16, 2026

    Chrome 0-Days, Router Botnets, AWS Breach, Rogue AI Agents & More

    March 16, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Search Blog
    About
    About

    At WifiPortal.tech, we share simple, easy-to-follow guides on cybersecurity, online privacy, and digital opportunities. Our goal is to help everyday users browse safely, protect personal data, and explore smart ways to earn online. Whether you’re new to the digital world or looking to strengthen your online knowledge, our content is here to keep you informed and secure.

    Trending Blogs

    This popular image-saving Chrome extension was just flagged as malware

    March 16, 2026

    Cisco extends its Secure AI Factory with Nvidia

    March 16, 2026

    Telus Digital confirms hack as ShinyHunters claims credit for massive data theft

    March 16, 2026

    AI Content Wasn’t Good Enough. Now It Is.

    March 16, 2026
    Categories
    • Blogging (41)
    • Cybersecurity (806)
    • Privacy & Online Earning (123)
    • SEO & Digital Marketing (495)
    • Tech Tools & Mobile / Apps (991)
    • WiFi / Internet & Networking (131)

    Subscribe to Updates

    Stay updated with the latest tips on cybersecurity, online privacy, and digital opportunities straight to your inbox.

    WifiPortal.tech is a blogging platform focused on cybersecurity, online privacy, and digital opportunities. We share easy-to-follow guides, tips, and resources to help you stay safe online and explore new ways of working in the digital world.

    Our Picks

    This popular image-saving Chrome extension was just flagged as malware

    March 16, 2026

    Cisco extends its Secure AI Factory with Nvidia

    March 16, 2026

    Telus Digital confirms hack as ShinyHunters claims credit for massive data theft

    March 16, 2026
    Most Popular
    • This popular image-saving Chrome extension was just flagged as malware
    • Cisco extends its Secure AI Factory with Nvidia
    • Telus Digital confirms hack as ShinyHunters claims credit for massive data theft
    • AI Content Wasn’t Good Enough. Now It Is.
    • Samsung says Privacy Display can limit Galaxy S26 Ultra visibility
    • Stryker attack wiped tens of thousands of devices, no malware needed
    • AI Search Barely Cites Syndicated News Or Press Releases
    • You Can Finally Get an Apple Watch Ultra 2 for Under $500
    © 2026 WifiPortal.tech. Designed by WifiPortal.tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.