Jessica Lyons

57 Followers
4 Following
8 Posts
Cybersecurity editor at The Register. Contact me with tips: [email protected] or jess.825 on Signal

Data theft and extortion group ShinyHunters exploited a critical Oracle PeopleSoft bug as a zero-day to compromise more than 100 organizations, including the University of Nottingham, across 300 vulnerable instances, beginning in May.

Most of these orgs, according to Google incident responders, were based in the US, and 68 percent of potentially vulnerable entities operate in the higher-ed sector. https://www.theregister.com/cyber-crime/2026/06/11/shinyhunters-claims-oracle-peoplesoft-0-day-hit-100-orgs/5254443

ShinyHunters claims Oracle PeopleSoft 0-day hit 100+ orgs

University of Nottingham is first of many, Shiny tells The Reg

theregister
Nightmare Eclipse released yet another 0-day exploit late Wednesday that they claim will spawn a command prompt that provides total access to the BitLocker volume. Researchers like @wdormann report mixed results: https://www.theregister.com/security/2026/06/11/nightmare-eclipse-drops-claimed-bitlocker-bypass-for-microsoft-windows/5254371
Nightmare Eclipse drops claimed BitLocker bypass for Microsoft Windows

Another day, another Windows exploit code

theregister
Nightmare Eclipse v Microsoft: the saga continues with the seventh 0-day drop just hours after Patch Tuesday's security advisories. https://www.theregister.com/security/2026/06/10/nightmare-eclipse-publishes-new-windows-defender-zero-day/5253725
Nightmare Eclipse publishes new Windows Defender zero-day

Revenge is a dish best served code

theregister