3 ms·
We're primarily an AWS shop but some Oracle BDR assigned to cover us recently reached out on LinkedIn. I asked for an incident report and received this terse r
by prdonahue 1y ago
We're primarily an AWS shop but some Oracle BDR assigned to cover us recently reached out on LinkedIn.
I asked for an incident report and received this terse response:
> There has been no breach of Oracle Cloud. The published credentials are not for the Oracle Cloud. No Oracle Cloud customers experienced a breach or lost any data.
- blast 1y agoThat exact statement is quoted in the OP too.
- prdonahue 1y agoYeah, they've clearly been given some minimal company line and aren't deviating from it. Not going to win any trust.
- decimalenough 1y agoPer article, Oracle has hastily rebranded the breached service as "Oracle Classic", for the sole purpose of being able to claim with a straight face that "Oracle Cloud" was not impacted.
- smithkl42 1y agoFWIW, that doesn't appear to be a "hasty rebrand" - Oracle has had this distinction for a long time. https://docs.oracle.com/en/cloud/saas/enterprise-performance-management-common/cgsad/idcs_oci_classic_diffs.html https://docs.oracle.com/en/cloud/saas/enterprise-performance...
- decimalenough 1y agoThe hacker has demonstrated that they have/had write access to URLs under login.us2.oraclecloud.com. It's incredibly disingenuous on Oracle's part to claim that this is not "Oracle Cloud".