Feed›Vulnerability›Bimbo Bakeries confirms data stolen in Oracle EBS zero-day a...
VulnerabilityCyber Insider
9.8 — CRITICAL

Bimbo Bakeries confirms data stolen in Oracle EBS zero-day attack

📅 7 September 2026 at 11:27 UTC📰 Cyber InsiderView original source ↗
Bimbo Bakeries confirms data stolen in Oracle EBS zero-day attack

Bimbo Bakeries USA has disclosed a data breach caused by the exploitation of an Oracle E-Business Suite (EBS) zero-day that allowed attackers to steal files containing names and Social Security numbers. The company says it determined on December 6, 2025, that unauthorized parties had acquired files stored in its Oracle EBS environment. However, it was … The post Bimbo Bakeries confirms data stolen in Oracle EBS zero-day attack appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

Bimbo Bakeries USA suffered a data breach due to the exploitation of an Oracle EBS zero-day vulnerability, allowing attackers to steal sensitive files containing names and Social Security numbers.

⚙️Technical Details
CVEs
CVE-2025-61882Affected Systems: Oracle E-Business Suite (EBS)Attack Vectors: NETWORK
Affected Systems
Oracle E-Business Suite (EBS)
Attack Vectors
NETWORK
💥Impact Assessment
Severity: CRITICAL
🛡️Recommended Actions
1Apply patches released by Oracle to prevent exploitation of the zero-day vulnerability.
2Monitor financial accounts and credit reports for unauthorized activity.
3Place security freezes with Equifax, Experian, and TransUnion to protect against identity theft.
📦Affected Products
Oracle Concurrent Processing
🔐NVD Verified DataVERIFIED
CVE-2025-61882 ↗CVSS 9.8 — CRITICAL
Attack Vector
NETWORK
Complexity
LOW
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-287
Affected Products (CPE)
Oracle Concurrent Processing

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider ↗
← Back to feed