ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit | Google Cloud Blog
…The script attempts authentication using a hardcoded list of common administrative and application-specific usernames and passwords. Upon establishing a successful SSH session, the script copies a defacement and extortion marker file…