Cybersecurity News Hub
No Result
View All Result
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us
No Result
View All Result
Cybersecurity News Hub
No Result
View All Result
Home Cyber Crime

Regional airline Envoy Air confirms Oracle E-Business Suite compromise

Cyberinchief by Cyberinchief
October 19, 2025
Reading Time: 2 mins read
0
Regional airline Envoy Air confirms Oracle E-Business Suite compromise



RELATED POSTS

Microsoft On Women In Cybersecurity At Black Hat Europe 2025 In London

AI Expert: We Have 2 Years Before Everything Changes! We Need To Start Protesting! — Tristan Harris – Lifeboat News: The Blog

Russian police bust bank-account hacking gang that used NFCGate-based malware

The regional American airline Envoy Air on Friday became the second company to confirm that information was stolen by hackers who breached their Oracle E-Business Suite application. 

A spokesperson for the airline confirmed that its IT system was impacted by the recent hacking campaign allegedly launched by Russian cybercriminal group Clop. Envoy Air, a wholly-owned subsidiary of American Airlines, said a “limited amount of business information and commercial contact details may have been compromised.”

On Thursday evening, the cybercriminals claimed to have stolen an undisclosed amount of information from American Airlines, adding the company to its leak site. 

An American Airlines spokesperson said the claim pertained to Envoy Air and that American Airlines itself does not use the Oracle E-Business Suite application.The parent company conducted a review over the last few weeks to confirm that the incident was related to the subsidiary, the spokesperson said. 

“We are aware of the incident involving Envoy’s Oracle E-Business Suite application. Upon learning of the matter, we immediately began an investigation and law enforcement was contacted,” an Envoy Air spokesperson told Recorded Future News. 

“We have conducted a thorough review of the data at issue and have confirmed no sensitive or customer data was affected.”

Buy JNews
ADVERTISEMENT

The spokesperson confirmed that the incident is specific to Envoy Air and said it had no impact on flight or airport ground handling operations. The company did not respond to questions about when the breach occurred or how long Clop was inside its systems. 

Envoy Air has more than 20,000 employees, providing regional flight services to more than 160 destinations under the American Eagle brand and managing about 800 daily flights. 

It also offers ground handling services for a number of American Airlines flights in Dallas, Chicago and Miami. The Texas-based company was formed as a consolidation of several smaller regional airlines. 

On Monday, Harvard University became the first entity to confirm being impacted by the campaign. Oracle did not respond to requests for comment but incident responders at Mandiant previously said they are aware of dozens of victims, but “expect there are many more.” 

Reports from Google and other security firms indicate the hackers used a variety of vulnerabilities in Oracle E-Business Suite to gain access, including at least one newly discovered bug that was added to a federal watchlist last week. 

The Clop cybercriminal group initially attempted to extort corporate executives by threatening to leak sensitive information stolen through the application. Oracle confirmed the campaign but initially said the hackers were exploiting bugs that had been addressed in a July update, without specifying which vulnerabilities were being used. 

FBI Assistant Director Brett Leatherman said last week that one of the bugs exploited in the campaign is a “‘stop-what-you’re-doing and patch immediately’ vulnerability.”

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.



Source link

Tags: AirairlinecompromiseConfirmsEBusinessEnvoyOracleRegionalSuite
ShareTweetPin
Cyberinchief

Cyberinchief

Related Posts

Microsoft On Women In Cybersecurity At Black Hat Europe 2025 In London
Cyber Crime

Microsoft On Women In Cybersecurity At Black Hat Europe 2025 In London

December 27, 2025
AI Expert: We Have 2 Years Before Everything Changes! We Need To Start Protesting! — Tristan Harris – Lifeboat News: The Blog
Cyber Crime

AI Expert: We Have 2 Years Before Everything Changes! We Need To Start Protesting! — Tristan Harris – Lifeboat News: The Blog

December 9, 2025
Russian police bust bank-account hacking gang that used NFCGate-based malware
Cyber Crime

Russian police bust bank-account hacking gang that used NFCGate-based malware

December 8, 2025
How To Reframe Cybersecurity Budget Requests And Get Them Approved
Cyber Crime

How To Reframe Cybersecurity Budget Requests And Get Them Approved

December 8, 2025
Contractors with hacking records accused of wiping 96 govt databases – Lifeboat News: The Blog
Cyber Crime

Contractors with hacking records accused of wiping 96 govt databases – Lifeboat News: The Blog

December 7, 2025
Maryland man sentenced for N. Korea IT worker scheme involving US government contracts
Cyber Crime

Maryland man sentenced for N. Korea IT worker scheme involving US government contracts

December 7, 2025
Next Post
Focus on the CNIL’s Recommendations for Mobile Applications

Focus on the CNIL’s Recommendations for Mobile Applications

Operation Heracles strikes blow against massive network of fraudulent crypto trading sites

Operation Heracles strikes blow against massive network of fraudulent crypto trading sites

Recommended Stories

Top 100 Cyber Security MCQs || Cyber Security Interview Questions

Top 100 Cyber Security MCQs || Cyber Security Interview Questions

October 29, 2025
#Quantumcomputing #Innovation #Quantumtechpr #Iyq2025

#Quantumcomputing #Innovation #Quantumtechpr #Iyq2025

December 6, 2025
BreachForums seized, but hackers say they will still leak Salesforce data

BreachForums seized, but hackers say they will still leak Salesforce data

October 12, 2025

Popular Stories

  • Allianz Life – 1,115,061 breached accounts

    Allianz Life – 1,115,061 breached accounts

    0 shares
    Share 0 Tweet 0
  • Prosper – 17,605,276 breached accounts

    0 shares
    Share 0 Tweet 0
  • साइबर अपराध | Illegal Payment Gateway & Rented Bank Accounts | MAMTA CHOPRA

    0 shares
    Share 0 Tweet 0
  • Miljödata – 870,108 breached accounts

    0 shares
    Share 0 Tweet 0
  • Snowflake Data Breach Explained: Lessons and Protection Strategies

    0 shares
    Share 0 Tweet 0

Search

No Result
View All Result

Recent Posts

  • Top 5 Mobile App Security Threats Leaders Must Prepare for in 2026
  • Microsoft On Women In Cybersecurity At Black Hat Europe 2025 In London
  • Polisi kembali ungkap sindikat Cyber Crime kejahatan Internasional – iNews Malam 09/03

Categories

  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos

Newsletter

© 2025 All rights reserved by cyberinchief.com

No Result
View All Result
  • Home
  • Cyber Crime
  • Cyber Security
  • Data Breach
  • Mobile Security
  • Videos
  • Advertise
  • Privacy Policy
  • Contact Us

© 2025 All rights reserved by cyberinchief.com

Newsletter Signup

Subscribe to our weekly newsletter below and never miss the latest News.

Enter your email address

Thanks, I’m not interested