Unbreakable Ventures
Unbreakable Ventures
The Oracle of truth | Risk Updates for Weeks of 24 March - 7 April '25
0:00
Current time: 0:00 / Total time: -18:19
-18:19

The Oracle of truth | Risk Updates for Weeks of 24 March - 7 April '25

Threat concerns this week: Tariffs, fake receipts, how to poison ChatGPT, and Oracle's lies.

Hello 👋 get a brew on because these are the top 3 emerging risks between March 24th, and April 7th, 2025…

Review our report’s terminology here ↗

Our main risk this fortnight is…

1. Technological: Oracle’s biggest breach they don’t want you to know about.

  • A hacker named Rose87168 claims to have breached Oracle’s identity platform, stealing over 6 million customer records including SSO credentials, OAuth2 keys, and hashed passwords, and is now extorting affected companies.

  • Oracle denies, but evidence says otherwise. Despite Oracle’s public denial, independent cybersecurity firms have verified the data is real, affecting up to 144,000 companies, with credentials dated as recently as 2024.

  • Why this matters: This breach represents a serious third-party risk. If you use Oracle Cloud or rely on its SSO platform, your systems and data could be compromised, even if your internal security is strong.

  • What to do now:

    • Investigate if your domain or team was affected.

    • Reset all credentials and rotate any tokens/keys.

    • Enable MFA and monitor for suspicious activity.

    • Update your incident response plans to account for vendor breaches.

Sources

You should be concerned if…

  • Large enterprises using Oracle Cloud for identity or infrastructure: Especially those using Oracle Identity Cloud Service (IDCS) or Oracle Cloud Classic for Single Sign-On (SSO), authentication, or access control.

  • Organisations with sensitive or regulated data: Financial institutions, healthcare providers, government agencies, and large SaaS platforms that store personally identifiable information (PII), financial records, or proprietary IP.

  • Companies with global operations or remote workforces: Those relying on cloud-based authentication for distributed teams are at higher risk if compromised credentials lead to unauthorised access.

  • Third-party vendors and Oracle partners: Suppliers, consultants, or service providers integrated into Oracle’s ecosystem may also have credentials or access points exposed.

  • IT, security, and DevOps teams: These individuals are directly responsible for managing cloud credentials, access policies, and system monitoring - and are now on the front line of mitigating the breach fallout.

These items are generic assumptions. We recommend considering your own unique risk landscape against your critical dependencies. If you don’t know what they are, get in touch.

Preventative actions

  • Investigate if your domain or team was affected.

  • Reset all credentials and rotate any tokens/keys.

  • Enable MFA and monitor for suspicious activity.

  • Update your incident response plans to account for vendor breaches.


2. Technological: Fake receipts being used for fraudulent expenses.

  • AI is powering a new wave of expense fraud: With tools like ChatGPT and DALL·E, anyone can now generate hyper-realistic fake receipts - complete with wrinkled textures, restaurant logos, itemised charges, and perfect maths.

  • Fraud is rising fast: AI-generated receipts accounted for nearly 15% of all expense fraud in 2024 - a 300% increase in just two years. And that’s only what’s been caught.

  • The risks are broad and costly: Businesses face financial losses, tax liabilities, damaged employee trust, and increased overhead trying to verify claims.

  • Detection and prevention are evolving: Tools like Ramp and Veryfi can now detect AI-generated receipts using metadata and OCR, while QR code-based receipts in Europe offer a strong model for verification.

Sources

3. Technological: Russia floods web with millions of fake articles, targetting LLMs.

  • AI is being deliberately fed disinformation: A Russian network called "Pravda" created over 3.6 million fake articles across 150+ sites in 49 countries to poison AI training data, and it’s working. Major chatbots repeated propaganda 33% of the time.

  • AI poisoning is a growing global threat: Beyond Russia, China, Iran, and others are manipulating AI through censorship, fake personas, and corrupted models like PoisonGPT.

  • The risks are real and serious: Businesses depending on AI face reputational damage, financial losses, and compliance issues if decisions are made using manipulated outputs.

  • Action is critical: Vet your AI vendors, cross-check outputs, monitor response patterns, and train teams to question AI-generated content; your data supply chain depends on it.

Sources

Want to discuss how these risks might effect your business?
Book 30 minutes with us, free ↗

Every fortnight, we send out a risk you may not have heard to help you stay prepared. You can always unsubscribe later.


Need support?

At Unbreakable Ventures, we are passionate about helping people get through disasters. That’s why our team of Advisors bring you this resource free of charge. If you need help understanding these threats and building a plan against them, the same Advisors are here to help over a 30-minute online call. Once complete, if you like what was provided, you can choose to provide a donation or subscribe to Unreasonable Ventures to support this channel.

Book your 30min call here

Help us help people just like you. Share this post today and spread the support 🤝

Share

Discussion about this episode