Wednesday , August 12 2026
950

900+ Oracle E-Business instances Exposed Online

The Shadowserver Foundation found about 950 Oracle E-Business Suite (EBS) systems on the internet around the world. This discovery came after they improved their fingerprinting method with help from Validin LLC.

The new detection method now uses both domain scanning and regular IP scanning. It has found active attacks using a serious weakness called CVE-2026-46817. DefusedCyber says that there are already attempts to exploit CVE-2026-46817.

AI Finds Nation-State-Level Zoom Flaw in Under 24 Hours, Zero-Click Attack Exposed

A serious security flaw in Zoom might let a hacker take control of someone else's device in a live meeting...
Read More
AI Finds Nation-State-Level Zoom Flaw in Under 24 Hours, Zero-Click Attack Exposed

Hacker Actively Exploit SonicWall and SharePoint Flaws

The CISA in the U.S. has added two important SonicWall SMA1000 flaws—CVE-2026-15409 and CVE-2026-15410-to its list of Known Exploited Vulnerabilities...
Read More
Hacker Actively Exploit SonicWall and SharePoint Flaws

Gunra Ransomware Leverage Fortinet VPN Flaws to Evade MFA Obtaining Enterprise Data

A joint warning from the FBI, CISA, the Department of Defense Cyber Crime Center, the NSA, the U.S. Secret Service,...
Read More
Gunra Ransomware Leverage Fortinet VPN Flaws to Evade MFA Obtaining Enterprise Data

Hackers accessed a US defense manufacturer’s Microsoft 365 account via phishing.

Attackers penetrated into IEH Corporation, a US defense and airspace firm, using a fake link that looked like a real...
Read More
Hackers accessed a US defense manufacturer’s Microsoft 365 account via phishing.

Google Play Apps Utilize Stealth Loaders to Spread Anatsa Banking Malware

Android users are reminded that a known app store listing can hold a money threat. Researchers found harmful loaders on...
Read More
Google Play Apps Utilize Stealth Loaders to Spread Anatsa Banking Malware

Bangladeshi org listed “the Gentlemen’ ransomware victim list: CIRT warns

The gentlemen ransomware group targets various industries of Bangladesh. In an advisory Bangladesh e-Government Computer Incident Response Team (BGD e-GOV...
Read More
Bangladeshi org listed “the Gentlemen’ ransomware victim list: CIRT warns

Around 800 Malicious npm Packages Distribute Cross-Platform RAT and Infostealer

A group of almost 800 harmful packages was added to the npm registry in a new effort to spread malware...
Read More
Around 800 Malicious npm Packages Distribute Cross-Platform RAT and Infostealer

Google Chrome 151 Update Fixes 41 Flaws, 6 Critical

Google has launched Chrome version 151.0.7922.108/.109 for Windows and macOS, and version 151.0.7922.108 for Linux. This update brings 41 security...
Read More
Google Chrome 151 Update Fixes 41 Flaws, 6 Critical

Swiss gov.t SharePoint incident compromised 200 accounts

Switzerland’s federal IT office says hackers exploited vulnerabilities to breach its Microsoft SharePoint servers and compromised approximately 200 accounts. The...
Read More
Swiss gov.t SharePoint incident compromised 200 accounts

Azad president, Secretary Post Heads to Contest: ISACA Dhaka Chapter Election

The ISACA Dhaka Chapter Election for 2026–2028 will take place on 8, August-2026. Most of the executive roles are likely...
Read More
Azad president, Secretary Post Heads to Contest: ISACA Dhaka Chapter Election

Oracle E-Business Suite Instances Exposed

While Shadowserver’s scan results show numbers of exposed systems instead of confirmed security breaches, the presence of active attack traffic against a commonly used business software raises big worries for organizations using unpatched EBS systems.

Oracle E-Business Suite is a complete ERP solution that companies around the world use to handle finance, supply chain, human resources, and customer relationships.

Oracle E-Business Suite Instances Exposed (Source: Shadowserver)

Shadowserver’s updated Device ID reporting now flags exposed EBS instances under the classification device_vendor: Oracle, device_model: Oracle E-Business Suite.

A world map from Shadowserver shows where exposed instances are found. It uses a special scale to show the data.

This exposure count shows only how visible something is on the internet. It doesn’t mean there is a security problem. Not every visible instance is unpatched or at risk for CVE-2026-46817.

Oracle has provided repair advice through its Critical Patch Update channel, specifically noting the May 2026 Critical Patch Update Security Alert.

Organizations using Oracle E-Business Suite are strongly encouraged to check this advisory right away to see if the patch applies to their version.

Mitigation

Security teams managing Oracle EBS deployments should take the following steps:

Apply Oracle’s May 2026 Critical Patch Update without delay, prioritizing internet-facing instances.
Cross-reference exposure data via Shadowserver’s dashboard or direct constituency reporting to identify at-risk assets.
Restrict internet-facing access to EBS instances where feasible, using VPNs or IP allowlisting as compensating controls.
Given the active exploitation status and the sensitive nature of data typically housed within ERP systems, organizations should treat this disclosure as time-critical and prioritize patching over routine maintenance cycles.

Check Also

Google Chrome 151 Update Fixes 41 Flaws, 6 Critical

Google has launched Chrome version 151.0.7922.108/.109 for Windows and macOS, and version 151.0.7922.108 for Linux. …