Oracle on Thursday released a fix for a zero-day vulnerability in its WebLogic Node Manager. The publicly released bug can allow an attacker to fully compromise a targeted server on Windows, according to an Oracle blog post. The patch does not appear to be related to researcher David Litchfield's talk this week at the Black Hat conference in Washington, D.C., where he revealed how zero-day vulnerabilities in the Oracle 11g database could be used to bypass security and take complete control of the popular software. — DK
Eyecare giant Luxottica, which owns Ray-Ban and Oakley, as well as operates U.S. vision insurance firm EyeMed Vision Care, has disclosed being impacted by a third-party data breach in 2021 impacting 70 million customers following the leak of a stolen database on various hacking forums from April 30 to May 12, BleepingComputer reports.
Major U.S. multinational food distribution corporation Sysco has disclosed that 126,243 current and former employees may have had their sensitive data accessed and acquired following a cyberattack in January, reports The Record, a news site by cybersecurity firm Recorded Future.