Skip to main content
CybersecurityInfo TechnologyIntellectual PropertyNews

ORACLE DATA BREACH: ORACLE CONFIRMS EXTENT OF DAMAGES IN BREACH

ORACLE DATA BREACH: ORACLE CONFIRMS EXTENT OF DAMAGES IN BREACH

ORACLE DATA BREACH: ORACLE CONFIRMS EXTENT OF DAMAGES IN BREACH

After previously denying that there was a breach in the first place, security researchers were able to confirm that there was a hack into Oracle Cloud that put 6 million records at risk. While Oracle has yet to publicly announce the oracle data breach that has resulted in exposed patient data, inter-company communications have confirmed the vulnerability. The attack was first discovered in January of this year but the extent of the data breach was still unknown. The attack in question was carried out by a hacker known as “rose87168”. They were able to access patient information via a vulnerability in their login endpoint, which allowed the hacker to access sign-on credentials, tenant data, and OAuth2 keys. From there the hacker also offered incentives to individuals who could decrypt single-sign-on passwords to, pressure companies to pay a fee for data removal.  However, it is still unknown whether these incentives had a monetary value or if anyone was offered a ransom. Since Oracle has yet to make a public comment, they are mostly putting the onus on hospitals to notify patients if there was a data breach, specifically if it violates HIPAA laws. While the company says they will take a supplemental role in helping victims, the process of doing so remains unknown at this point.

Inside Out Legal is your In-House Extension.

We handle a wide variety of matters that are typically handled by corporate in-house legal departments. We are available to provide additional legal resources directly to the general counsel’s office to handle overflow and specific projects. We are also able to provide services directly to the business team itself. Our team regularly counsels clients on how to comply with federal and state regulations that govern healthcare, higher education, information technology, data privacy and security, commercial real estate and various other highly regulated services. We also have extensive experience creating or revising compliance programs on behalf of our clients.

Learn more or schedule a consultation with one of our expert attorneys at https://inoutlaw.com/

Leave a Reply