Two Oracle data security breaches have been reported in the past week, and the database goliath not only remains reluctant to acknowledge the disasters publicly – it may be scrubbing the web of evidence, too. On March 20, 2025, a netizen using the handle rose87168 claimed to have accessed at least two login systems for the US giant's cloud customers, allowing them to swipe what's said to be six million records – copies of subscribers' encrypted single-sign-on (SSO) passwords, encrypted LDAP passwords, security certificates, and more. Oracle quickly denied its networks and clients had been compromised. "There has been no breach of Oracle Cloud," a spokesperson told The Register on Friday, March 21. "The published credentials are not for the Oracle Cloud. No Oracle Cloud customers experienced a breach or lost any data." The netizen then sent evidence in the form of a 10,000-line sample of what was said to be stolen Oracle-hosted data to Alon Gal, co-founder and CTO at security shop Hudson Rock. Gal said he presented this information to some Oracle customers, who confirmed it appeared to be legitimate, in that it was their private data entrusted to Oracle and yet was now seemingly in the hands of others. The evidence included a database extract containing personal information of customers' employees, sample LDAP records, and a list of supposedly affected companies. Around the same time, infosec outfit CloudSEK published an analysis of the purported security breach and concluded ...
Oracle Cloud security SNAFU latest: IT giant accused of pedantry as evidence scrubbed
The Register
·Thomas Claburn
·Published Mar 31, 2025
·Updated
Affected Software
4 affected components
Oracle Access Manager
Oracle Cloud
Oracle Cloud Classic
Oracle Cloud
Frequently Asked Questions
1
What are the reported security breaches involving Oracle?
Two significant data security breaches at Oracle have been reported in the past week.
2
What issues are raised about Oracle's response to the breaches?
The article highlights Oracle's reluctance to publicly acknowledge the breaches and suggests possible evidence scrubbing.
3
Which Oracle products are affected by the reported breaches?
The breaches reportedly affect Oracle Access Manager and the Oracle Cloud services.
4
What are the potential implications of these breaches for Oracle users?
The implications include possible data exposure and diminished trust in Oracle's cloud security capabilities.
5
How has Oracle's handling of the security incidents been perceived?
Oracle has faced criticism for its perceived lack of transparency and accountability regarding the security breaches.