ITSECURITY.GURU WHAT HAPPENED · DOES IT AFFECT YOU · WHAT TO DO
Board › Wire › BleepingComputer
Vulnerabilities

ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks

Illustration · Web & browsers

The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers. [...]

Continue reading at BleepingComputer →