Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
2025-Oracle-SSO-LDAP-Attack-Post-Incident-Written-Report — Post-incident report analyzing the Oracle Cloud SSO/LDAP supply chain attack (CVE-2021-35587). Details the exploitation of legacy server infrastructure, impact across 140,000+ cloud tenants, root-cause findings, and phased mitigation strategies. | Kitploit
Tools/GitHubGitHub/jwa7470/2025-oracle-sso-ldap-attack-post-incident-written-report
Vulnerability AnalysisCloud SecuritySupply Chain SecurityAuthenticationLearning & EducationIncident Response
GitHubjwa7470/2025-oracle-sso-ldap-attack-post-incident-written-report

2025-Oracle-SSO-LDAP-Attack-Post-Incident-Written-Report

Post-incident report analyzing the Oracle Cloud SSO/LDAP supply chain attack (CVE-2021-35587). Details the exploitation of legacy server infrastructure, impact across 140,000+ cloud tenants, root-cause findings, and phased mitigation strategies.

View Repository
16h 4m agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

2025-Oracle-SSO-LDAP-Attack-Post-Incident-Written-Report

This post-incident report examines the 2025 supply chain breach targeting Oracle Cloud’s identity and authentication infrastructure. It details how threat actors exploited an unpatched pre-authentication Remote Code Execution vulnerability (CVE-2021-35587, CVSS 9.8) in legacy Oracle Access Manager (OAM) instances to forge authentication tokens and operate undetected for months. The report evaluates the blast radius—which impacted over 140,000 tenants and exposed 6 million user records—conducts a root-cause analysis on legacy asset exposure, and outlines immediate token revocation, short-term SIEM enhancement, and long-term Zero Trust security recommendations.

Download Tool