:

PEOPLESOFT 0-DAY BREACHES HUNDREDS OF ORGS

INDUSTRY DESK2 MIN READ
FRI, JUN 12, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A critical zero-day vulnerability in Oracle's PeopleSoft software has enabled attackers to steal gigabytes of data from hundreds of organizations. The flaw requires immediate patching across affected deployments.

A zero-day vulnerability in PeopleSoft, Oracle's enterprise resource planning software, is actively being exploited to extract large quantities of data from multiple organizations. The vulnerability ranks among the most severe security flaws, with attackers gaining the ability to access and exfiltrate gigabytes of sensitive information. PeopleSoft serves organizations across finance, human resources, and supply chain management—making compromised systems a significant risk for data breaches. Hundreds of organizations running vulnerable PeopleSoft instances have been targeted. The scope of the attack indicates this is not a targeted campaign but rather widespread exploitation of the flaw. Oracle has not yet released a patch for the vulnerability. Organizations using PeopleSoft are advised to implement compensating controls, isolate affected systems where possible, and monitor for unauthorized access. Security teams should prioritize detection of anomalous data access and exfiltration attempts. The incident underscores persistent risks in enterprise software. Zero-day vulnerabilities—flaws unknown to vendors before public exploitation—are particularly dangerous because no patch exists at the time of attack. The delay between discovery and patch deployment creates a critical window of exposure. Organizations should assume systems may already be compromised and conduct forensic analysis of access logs and data transfers. Credential rotation for accounts with PeopleSoft access is recommended as a precautionary measure. Oracleowned PeopleSoft handles sensitive employee and financial data for large enterprises globally. A breach of this scale could expose personally identifiable information, salary data, benefits information, and other confidential business records. This marks another significant vulnerability in widely-used enterprise software, following a pattern of high-impact flaws in critical infrastructure and business systems. Organizations continue to face elevated risk during the period between vulnerability disclosure and patch availability.

■ SOURCES

Ars Technica

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

The U.S. Cybersecurity and Infrastructure Security Agency has issued an urgent directive requiring federal agencies to mitigate actively exploited vulnerabilities in IBM Langflow, N-central, and Apache Tomcat within three days.

14H AGOSecurity Desk

The Department of Homeland Security is attempting to obtain Signal group chat messages from plaintiffs in a free-speech lawsuit against the agency. The move has raised concerns about using legal discovery to surveil encrypted communications.

20H AGOIndustry Desk

Maksim Silnikau, creator of the Ransom Cartel ransomware operation, received a 16-year prison sentence for orchestrating attacks against at least 18 companies worldwide.

20H AGOSecurity Desk

Atlassian's Rovo AI assistant can exfiltrate sensitive data despite organizational security controls. The vulnerability allows the tool to extract and transmit protected information beyond intended boundaries.

22H AGOIndustry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.