Particle.news

Download on the App Store

Cl0p-Linked Extortion Emails Target Global Firms Over Alleged Oracle E‑Business Suite Theft

Investigators are still assessing the hackers’ materials, according to Google’s threat team.

Overview

  • Executives and IT teams at major companies, including Google, have received emails alleging theft of sensitive Oracle E‑Business Suite data.
  • The messages started on September 29 and were sent from hundreds of compromised third‑party email accounts, according to Google and Halcyon.
  • Attackers supplied screenshots and directory trees as purported proof and claimed ties to Cl0p, with Google noting overlap with at least one known Cl0p affiliate address.
  • Halcyon reports recent seven‑ and eight‑figure ransom demands, including one case reaching up to $50 million, while Oracle has not commented.
  • Separately, the Financial Times reported that China is restricting the use of Nokia and Ericsson equipment in telecom networks.