NEWS

Oracle Faces Cybersecurity Crisis as Hacker Claims Major Data Breach

Oracle is embroiled in a cybersecurity scandal as a hacker claims to have stolen six million data records. While the tech giant denies any breach, the stakes are high in this ongoing digital showdown.

By
LNGFRM Team
Published March 21, 2025
Illustration by Addison Smith for LNGFRM

In the rapidly evolving world of digital security, a new drama unfolds as Oracle finds itself at the center of a storm.

A threat actor, ominously named rose87168, claims to have infiltrated Oracle’s Cloud federated Single Sign-On (SSO) login servers, making off with a staggering six million data records.

Oracle, however, stands its ground, firmly denying any breach of its cloud fortress.

This cybersecurity showdown began when rose87168 brazenly advertised their alleged spoils on the notorious BreachForums, offering the stolen data for sale or trade.

The hacker’s claims include encrypted SSO passwords, Java Keystore files, and key enterprise manager JPS keys, all allegedly lifted from Oracle’s servers.

In a move reminiscent of a Hollywood thriller, rose87168 even invited collaboration from fellow cybercriminals, offering to share the bounty with anyone who could help decrypt these digital fortresses.

Oracle, a titan in the tech industry, responded swiftly to these allegations.

There has been no breach of Oracle Cloud, the company assured, emphasizing that no customer data was compromised.

Yet, the hacker’s audacity knows no bounds.

To prove their point, rose87168 provided an Internet Archive URL as evidence of their supposed breach, showing a text file uploaded to Oracle’s US2 login server—a digital calling card of sorts, left provocatively for all to see.

The plot thickens as rose87168 claims to have contacted Oracle, offering to reveal the exploit method in exchange for 100,000 Monero (a cryptocurrency favored for its privacy features).

Oracle’s alleged refusal to pay, after requesting detailed information on the breach, adds another layer to this unfolding saga.

Whether their decision was a calculated move or a misstep remains to be seen.

While Oracle maintains its position of invulnerability, the shadow of doubt looms large.

BleepingComputer, the news outlet that first reported this story, has reached out to companies allegedly affected by the breach.

The validation of these claims could turn the tide in this digital duel, potentially exposing vulnerabilities in Oracle’s defenses or vindicating the company’s steadfast denials.

Amidst this digital chaos, one thing is clear: the stakes in cybersecurity have never been higher.

As companies become ever more reliant on cloud services, the need for impenetrable security measures becomes paramount.

This incident serves as a stark reminder of the perpetual cat-and-mouse game between cyber defenders and attackers.

For Oracle, the challenge now is not just to defend its technical prowess but to reassure its clients and stakeholders that its digital walls are as robust as claimed.

In this era where data is the new currency, safeguarding it is not just a technical challenge but a trust imperative.

As the world watches the Oracle saga unfold, the question remains: will this be a tale of corporate resilience or a cautionary tale of overconfidence in the face of a digital adversary?

Only time will unravel the truth behind this cyber mystery.

Author

  • LNGFRM Team

    Frank DiBernardo handles LNGFRM's Foodie and Miscellaneous writing tasks. He's always getting ideas from users, so don't be afraid to send an email to the editor.

Daily Newsletter
Subscribe to our Newletter!
You May Also Like
© 2026 LNGFRM. All rights reserved.