Technology NewsTechnology NewsTechnology News
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Reading: University of Pennsylvania Faces Data Breach After Oracle EBS Attack
Share
Font ResizerAa
Technology NewsTechnology News
Font ResizerAa
Search
  • Computing
  • AI
  • Robotics
  • Cybersecurity
  • Electric Vehicle
  • Wearables
  • Gaming
  • Space
Follow US
  • Cookie Policy (EU)
  • Contact
  • About
© 2025 NEWSLINKER - Powered by LK SOFTWARE
Cybersecurity

University of Pennsylvania Faces Data Breach After Oracle EBS Attack

Highlights

  • University of Pennsylvania reports Oracle EBS data breach affecting hundreds.

  • Other institutions and businesses experienced similar attacks around the same period.

  • Patches applied by victims aim to prevent future intrusions but risks remain.

Kaan Demirel
Last updated: 2 December, 2025 - 9:49 pm 9:49 pm
Kaan Demirel 1 hour ago
Share
SHARE

Contents
How Did the Breach Impact the University of Pennsylvania?Which Other Organizations Were Affected by These Attacks?What Actions Have Been Taken to Address the Issue?

Rising concerns about security vulnerabilities in popular business software have emerged as major institutions, including the University of Pennsylvania, disclose breaches linked to Oracle E-Business Suite (EBS). As targeted cyberattacks grow more sophisticated, organizations are reevaluating their defenses against groups like Clop, which target critical IT systems for extortion. Many affected entities only became aware of these breaches after being contacted by threat actors. The ongoing aftermath highlights how interconnected technologies can expose even well-resourced organizations to large-scale data risks.

Similar large-scale campaigns targeting Oracle EBS have affected numerous organizations in prior incidents, but the current wave involving the Clop ransomware group is distinguished by its swift exploitation of multiple vulnerabilities and coordinated extortion attempts. Earlier cases involved other ransomware groups focusing on file transfer applications, but this campaign’s reach across varied sectors, including education, media, and business, marks a notable escalation. The consistent delay in breach detection and subsequent public notifications by victim organizations remains a recurring pattern, further underscoring pressing security challenges.

How Did the Breach Impact the University of Pennsylvania?

University of Pennsylvania confirmed nearly 1,500 Maine residents were affected during a three-day security incident in August involving its Oracle EBS system. The breach became evident once Oracle acknowledged the critical vulnerability following extortion emails sent to victims. Investigations later revealed that personal information was accessed, though the university did not initially disclose specific details regarding the nature or extent of the data involved.

Which Other Organizations Were Affected by These Attacks?

Other institutions, including Dartmouth College, Harvard University, Cox Enterprises, and Logitech, also reported security incidents linked to Oracle EBS vulnerabilities during the same period. Data involved in these breaches ranged from names and Social Security numbers to employee and supplier details. According to regulatory filings and breach notifications, the overall pool of affected organizations spans media outlets, technology companies, and educational institutions, reflecting the widespread use and vulnerabilities of Oracle EBS.

What Actions Have Been Taken to Address the Issue?

Both private companies and universities have moved to patch their Oracle systems promptly after the vulnerability was publicized. Addressing concerns, a University of Pennsylvania spokesperson stated,

“The University of Pennsylvania was one of nearly 100 already identified organizations simultaneously impacted by the widely exploited Oracle E-Business Suite incident, involving a previously unknown security vulnerability in Oracle’s system.”

They further added,

“Penn has implemented the patches that Oracle issued to resolve the vulnerability. Penn has found no evidence that any of this information has been or is likely to be publicly disclosed or misused for fraudulent purposes.”

Other victims, such as Harvard and Dartmouth, continued to investigate, with some limiting the breach’s scope to specific administrative units or data types.

The increasing prevalence of orchestrated cyberattacks on widely adopted business platforms such as Oracle EBS raises important considerations for organizations dependent on integrated IT infrastructure. Even as targeted institutions patch vulnerabilities, the incident shows a lag often persists between breach occurrence and realization, potentially amplifying exposure. Given the repeated focus on major platforms, organizations may benefit from frequent system reviews, rapid vulnerability response, employee awareness, and limiting sensitive data in vulnerable systems. While victims like the University of Pennsylvania report no evidence of data misuse so far, the threat posed by groups such as Clop persists, emphasizing the lasting need for vigilant cybersecurity practices.

You can follow us on Youtube, Telegram, Facebook, Linkedin, Twitter ( X ), Mastodon and Bluesky

You Might Also Like

Senators Debate FCC Strategy After Salt Typhoon Hacking Incident

Google Fixes 107 Android Flaws, Tackles Critical Zero-Day Threats

Authorities Seize Cryptomixer’s Assets in Multinational Money Laundering Crackdown

Ransomware Attack Forces Shutdown of OnSolve CodeRED System

Lawmakers Seek Anthropic CEO’s Input on AI-Aided Cyber Espionage

Share This Article
Facebook Twitter Copy Link Print
Kaan Demirel
By Kaan Demirel
Kaan Demirel is a 28-year-old gaming enthusiast residing in Ankara. After graduating from the Statistics department of METU, he completed his master's degree in computer science. Kaan has a particular interest in strategy and simulation games and spends his free time playing competitive games and continuously learning new things about technology and game development. He is also interested in electric vehicles and cyber security. He works as a content editor at NewsLinker, where he leverages his passion for technology and gaming.
Previous Article Samsung Offers Galaxy Watch 8 Classic Trade-In Deal
Next Article OED Picks “Rage Bait” as 2023 Word of the Year

Stay Connected

6.2kLike
8kFollow
2.3kSubscribe
1.7kFollow

Latest News

Yacht Club Faces Uncertainty as Mina the Hollower Nears Release
Gaming
Tesla Fills 2025 Model Y Orders in China as Demand Surges
Electric Vehicle
U.S. Funds Zipline’s Drone Expansion to Support African Healthcare
Robotics
Shoppers Secure Discounts on KingSpec 4TB SSD as Cyber Week Ends
Computing
OED Picks “Rage Bait” as 2023 Word of the Year
Gaming
NEWSLINKER – your premier source for the latest updates in ai, robotics, electric vehicle, gaming, and technology. We are dedicated to bringing you the most accurate, timely, and engaging content from across these dynamic industries. Join us on our journey of discovery and stay informed in this ever-evolving digital age.

ARTIFICAL INTELLIGENCE

  • Can Artificial Intelligence Achieve Consciousness?
  • What is Artificial Intelligence (AI)?
  • How does Artificial Intelligence Work?
  • Will AI Take Over the World?
  • What Is OpenAI?
  • What is Artifical General Intelligence?

ELECTRIC VEHICLE

  • What is Electric Vehicle in Simple Words?
  • How do Electric Cars Work?
  • What is the Advantage and Disadvantage of Electric Cars?
  • Is Electric Car the Future?

RESEARCH

  • Robotics Market Research & Report
  • Everything you need to know about IoT
  • What Is Wearable Technology?
  • What is FANUC Robotics?
  • What is Anthropic AI?
Technology NewsTechnology News
Follow US
About Us   -  Cookie Policy   -   Contact

© 2025 NEWSLINKER. Powered by LK SOFTWARE
Welcome Back!

Sign in to your account

Register Lost your password?