Oracle and Parexel: Parexel Data Breach Investigation

Oracle and Parexel: Parexel Data Breach Investigation

**Parexel Reports Data Breach Impacting Sensitive Employee Information**

Parexel, a global clinical research organization, disclosed a data breach affecting sensitive personal information stored in its Oracle OCI E-Business Suite (Oracle EBS) environment. On October 4, 2025, the company detected suspicious activity within the system, prompting an investigation.

The breach, confirmed through forensic analysis, revealed that an unauthorized third party accessed employee-related data. Exposed information may include names, Social Security numbers, dates of birth, financial account numbers, payment card details (excluding CVVs), and national ID numbers, though the exact data varies by individual.

On December 17, 2025, Parexel began notifying affected individuals via mail, detailing the compromised information and offering 24 months of complimentary credit monitoring services. The breach notice was filed with the Attorney General of Massachusetts, where impacted residents were among the first to be informed. The full scope of affected individuals and additional details remain under review.

Source: https://straussborrelli.com/2025/12/17/parexel-data-breach-investigation/

Oracle cybersecurity rating report: https://www.rankiteo.com/company/oracle

Parexel cybersecurity rating report: https://www.rankiteo.com/company/parexel

"id": "ORAPAR1766015901",
"linkid": "oracle, parexel",
"type": "Vulnerability",
"date": "10/2025",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'customers_affected': 'Employees',
                        'industry': 'Clinical Research, Pharmaceutical',
                        'name': 'Parexel',
                        'type': 'Company'}],
 'customer_advisories': '24 months of complimentary credit monitoring services '
                        'provided to affected individuals',
 'data_breach': {'personally_identifiable_information': 'Yes',
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Name',
                                              'Social Security number',
                                              'Date of birth',
                                              'Financial account number',
                                              'Payment card number (without '
                                              'CVV)',
                                              'National ID number']},
 'date_detected': '2025-10-04',
 'date_publicly_disclosed': '2025-12-17',
 'description': 'Parexel reported a data breach where sensitive personal '
                'identifiable information in its Oracle OCI E-Business Suite '
                'environment may have been compromised. An unauthorized third '
                'party accessed the data, leading to the exposure of personal '
                'and financial information of employees.',
 'impact': {'data_compromised': 'Sensitive personal identifiable information',
            'identity_theft_risk': 'High',
            'payment_information_risk': 'High',
            'systems_affected': 'Oracle OCI E-Business Suite (Oracle EBS)'},
 'investigation_status': 'Completed',
 'references': [{'source': 'Attorney General of the Commonwealth of '
                           'Massachusetts'}],
 'regulatory_compliance': {'regulatory_notifications': 'Reported to the '
                                                       'Attorney General of '
                                                       'the Commonwealth of '
                                                       'Massachusetts'},
 'response': {'communication_strategy': 'Data breach notification letters '
                                        'mailed to impacted individuals'},
 'threat_actor': 'Unauthorized third party',
 'title': 'Parexel Data Breach Involving Sensitive Personal Information',
 'type': 'Data Breach'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.