Oracle has admitted to some customers that attackers have stolen old client credentials from a “legacy environment” last used in 2017. The threat actor uploaded newer records from 2025 on a hacking forum and shared data from the end of 2024 with BleepingComputer. CrowdStrike and the FBI are investigating the incident, which is alleged to have seen the attacker exfiltrate data from the Oracle Identity Manager database. Oracle has consistently denied a breach in Oracle Cloud.

CBI arrests hacker for targeting Delhi Jal Board customers using malware | Delhi News
Indian cyber hacker Bittu Kumar has been arrested by the Central Bureau of Investigation (CBI) for running a malware scam using the Delhi Jal Board