
ShinyHunters used URL-encoding techniques to bypass WAF protections and exploit CVE-2024-21060 in Oracle PeopleSoft, compromising FBI's job portal. The attackers moved laterally through the PeopleSoft environment to access employee databases. Runtime segmentation could have limited blast radius after initial compromise. #ThreatIntel 🔗 Read the full analysis: https://aviatrix.ai/threat-research-center/fbi-removes-accenture-contractor-after-patch-failure-led-to-shinyhunters-breach-2026
