Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

GlobalLogic Confirms Data Breach

November 12, 2025
Reading Time: 4 mins read
in Incidents
Fraudster Jailed In £5.5Bn Bitcoin Scam

Digital engineering firm GlobalLogic has confirmed that a large-scale data breach, linked to the notorious Clop ransomware gang, exposed the personal information of 10,471 current and former employees. The Hitachi-owned company filed a disclosure with Maine’s attorney general, acknowledging that criminals gained unauthorized access to their systems. According to notification letters sent to those affected, the stolen data is highly sensitive, comprising names, addresses, Social Security numbers, passport details, and bank account information. The period of unauthorized activity was identified as beginning on July 10, 2025, and concluding on August 20, 2025, aligning with broader threat intelligence reports indicating suspicious HTTP traffic targeting Oracle EBS servers starting in early July.

The disclosure positions GlobalLogic as one of the most recent victims in a widespread campaign exploiting vulnerabilities within the Oracle E-Business Suite (EBS), a campaign now strongly associated with the Clop cybercrime group. Attackers are believed to have leveraged security flaws tracked as CVE-2025-61882 and CVE-2025-61884 in the enterprise resource planning software, specifically targeting organizations whose EBS systems were accessible via the public internet. This systematic exploitation has already impacted numerous major corporations, with The Washington Post and Allianz UK recently confirming their involvement. Allianz UK, for instance, reported that 80 current and 670 former customers were affected, as Clop continues to list nearly 30 allegedly compromised organizations across multiple sectors on its dark web leak site.

While Oracle released emergency patches for the exploited vulnerabilities in September, many organizations were likely compromised before these updates were made available. This reflects Clop’s established strategy of rapidly exploiting newly disclosed flaws in widely used enterprise platforms, a tactic they have previously employed against software from vendors like Accellion, MOVEit, and GoAnywhere. The sheer scale of the current campaign underscores the deeply rooted and critical presence of Oracle’s EBS platform within the corporate world. Despite its age and inherent complexity, the system, which integrates essential functions like payroll, procurement, and HR, remains an extremely valuable target for threat actors seeking financial or employee data.

The methodology employed by Clop’s operators in this incident signals a shift away from traditional ransomware encryption toward pure data theft and subsequent extortion. By focusing solely on exfiltrating data and publishing stolen files on leak sites, the group successfully pressures victims into paying a ransom. This approach eliminates the operational risks associated with deploying encryptors and has proven to be a highly lucrative model for the cybercrime group in previous mass-exploitation events.

As the scale of these breaches continues to emerge, Oracle has yet to provide public commentary on the full extent of the compromises. Regardless, Clop’s dedicated leak site continues to expand its list of alleged victims. This ongoing growth strongly indicates that the campaign exploiting the critical Oracle EBS vulnerabilities remains active and is likely to claim additional corporate victims in the near future.v

Reference:

  • Hitachi Owned GlobalLogic Admits Data Stolen From 10000 Current And Former Staff
Tags: cyber incidentsCyber Incidents 2025Cyber threatsNovember 2025
ADVERTISEMENT

Related Posts

Fraudster Jailed In £5.5Bn Bitcoin Scam

Hamburg Miniature Museum Hit By Hack

November 12, 2025
Fraudster Jailed In £5.5Bn Bitcoin Scam

Fraudster Jailed In £5.5Bn Bitcoin Scam

November 12, 2025
Chinese Breach Exposes Cyber Weapons

Italian Adviser Targeted By Paragon Spyware

November 11, 2025
Chinese Breach Exposes Cyber Weapons

Manassas Schools Close After Cyberattack

November 11, 2025
Chinese Breach Exposes Cyber Weapons

Chinese Breach Exposes Cyber Weapons

November 11, 2025
Hackers Steal Sonicwall Cloud Backups

Oracle EBS Hack Hits Nearly 30 Victims

November 10, 2025

Latest Alerts

Npm Package Targets GitHub Repos

GootLoader Returns With Font Trick

WhatsApp Malware Hits Brazil Banks

Glassworm Found In Three VS Code Addons

Triofox Flaw Lets Hackers Install Remote

Delayed Payloads Hit Nuget Packages

Subscribe to our newsletter

    Latest Incidents

    GlobalLogic Confirms Data Breach

    Hamburg Miniature Museum Hit By Hack

    Fraudster Jailed In £5.5Bn Bitcoin Scam

    Italian Adviser Targeted By Paragon Spyware

    Manassas Schools Close After Cyberattack

    Chinese Breach Exposes Cyber Weapons

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial