In May and early June 2026, a critical zero-day vulnerability in Oracle PeopleSoft was exploited by the ShinyHunters hacking group, exposing the Council of Europe and nearly 100 other organizations to significant data theft and extortion. The attackers targeted enterprise resource-planning systems, accessing sensitive data such as personal records, payroll information, and even immigration documents. Extortion demands ranged from $400,000 to $2.3 million per victim, often requested in Bitcoin, although the total amount remains undisclosed. The Council of Europe stood firm, refusing to negotiate or pay any ransom.

This incident underscores the inadequacy of traditional perimeter security in a world where users, applications, and data are increasingly distributed across cloud platforms, SaaS services, and third-party environments. The focus must shift to a Zero Trust model that prioritizes identity, device trust, least-privilege access, and continuous verification. Organizations need to assume compromise is possible and prepare for prevention, detection, containment, and recovery.

The rapid evolution of technology, fueled by AI and cloud service reliance, has introduced new risks and dependencies. Attackers leverage AI to automate reconnaissance and exploit weaknesses, while organizations must contend with supply-chain risks from their service providers. Delayed patching can quickly turn into large-scale exploitation events, as automated scanning allows vulnerabilities to be discovered and exploited swiftly.

To mitigate these risks, organizations must prioritize patching high-risk vulnerabilities, maintain isolated backups, and regularly test recovery plans. Identity security is paramount, as attackers often target privileged accounts or API credentials. Multi-factor authentication and strong monitoring are essential defenses. Additionally, understanding concentration risks and mapping dependencies are critical to ensuring business continuity and cybersecurity efforts are aligned.

Resilience is about more than preventing failure; it is about ensuring that failures do not escalate into catastrophes. By integrating cybersecurity and business continuity strategies, organizations can better prepare for and recover from inevitable breaches, ensuring that their operations remain secure and resilient.