Analytics Story: Oracle E-Business Suite Exploitation

Description

Leverage searches that allow you to detect and investigate unusual activities that might relate to the exploitation of Oracle E-Business Suite vulnerabilities (CVE-2025-61882 and CVE-2025-61884).

Why it matters

This story addresses Oracle E-Business Suite exploitation. This story focuses on the detection of exploitation attempts targeting Oracle E-Business Suite vulnerabilities, specifically CVE-2025-61882 and CVE-2025-61884. These vulnerabilities have been actively exploited in the wild, allowing attackers to execute arbitrary code on vulnerable systems. The story provides analytics to help security operations centers (SOCs) and security researchers monitor and respond to potential exploitation attempts.

Detections

Name ▲▼ Technique ▲▼ Type ▲▼
Cisco Secure Firewall - Oracle E-Business Suite Correlation Exploit Public-Facing Application TTP
Cisco Secure Firewall - Oracle E-Business Suite Exploitation Exploit Public-Facing Application TTP

Data Sources

Name ▲▼ Platform ▲▼ Sourcetype ▲▼ Source ▲▼
Cisco Secure Firewall Threat Defense Intrusion Event N/A cisco:sfw:estreamer not_applicable

References


Source: GitHub | Version: 1