Michelin Confirms Data Breach Linked to Oracle EBS Cyber Attack
Tire Manufacturer Michelin Hit by Data Breach Linked to Oracle EBS Exploit
Michelin, the multinational tire manufacturer, has confirmed that it was one of the organizations affected by a massive cybercrime campaign targeting companies that use Oracle’s E-Business Suite (EBS) solution. The breach was caused by the exploitation of a zero-day vulnerability in Oracle EBS, which allowed hackers to access some of Michelin’s files.
Attribution and Impact
The attack was attributed to the Cl0p ransomware and extortion group, which has taken credit for the hacking campaign. However, cybersecurity researchers believe that the operation was carried out by a sophisticated cluster of threat actors, including the FIN11 group. Over 100 organizations have been listed on the Cl0p website as allegedly targeted in the campaign.
The company stated that its teams promptly investigated the incident and took corrective actions to contain the breach. “Thanks to Michelin’s expertise and processes, we were able to take all necessary actions to fix the situation,” the spokesperson said. Michelin emphasized that no ransomware was involved in the attack and that there was no impact on its global systems.
Consequences and Reactions
The hackers have publicly released over 315GB of archives allegedly containing files stolen from Michelin. However, the company has assured that the safety of its customers’ and partners’ data is of utmost importance.
The Oracle EBS campaign has also affected other high-profile organizations, including Madison Square Garden, which recently confirmed that it was targeted in the attack. The hackers leaked over 210GB of archives containing files allegedly stolen from the company.
The incident highlights the importance of robust cybersecurity measures and the need for organizations to stay vigilant in the face of increasingly sophisticated cyber threats.
