ShinyHunters hacked Clop ransomware gang's leak site

Hacking group ShinyHunters compromised and defaced the data leak site of the Clop ransomware gang on September 25 via an unpatched Grav CMS path traversal vulnerability. Clop relocated to a new Tor address after confirming the breach.

6 reports · 5 independenttech · other

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

rss:bleepingcomputertech4d ago wire ×2 kagi ↗

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. [...]

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has

mastodon:infosec-exchangeother4d ago kagi ↗

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. https://www. bleepingcomputer.com/news/secu rity/shinyhunters-hacked-clop-leak-site-using-grav-cms-path-traversal-flaw/

🏆 New Achievement! Ransomware Gang Gets Ransom'd! Today's disaster is brought to you by Unpatched Grav CMS — when your leak site needs that artisanal, handcrafted path traversal vulnerability. ShinyH

mastodon:infosec-exchangeother4d ago kagi ↗

🏆 New Achievement! Ransomware Gang Gets Ransom'd! Today's disaster is brought to you by Unpatched Grav CMS — when your leak site needs that artisanal, handcrafted path traversal vulnerability. ShinyHunters, sponsor of chaos, exploited exactly that flaw to compromise and deface the Clop ransomware gang's own data leak site, forcing the notorious extortion crew to pack up and migrate to a fresh Tor

🤖 ShinyHunters defaced Clop's data leak site via an unauthenticated path traversal flaw in an unpatched Grav CMS instance. The ransomware gang moved to a new Tor address after confirming the compromi

mastodon:infosec-exchangeother4d ago kagi ↗

🤖 ShinyHunters defaced Clop's data leak site via an unauthenticated path traversal flaw in an unpatched Grav CMS instance. The ransomware gang moved to a new Tor address after confirming the compromise. 🔗 https://www. bleepingcomputer.com/news/secu rity/shinyhunters-hacked-clop-leak-site-using-grav-cms-path-traversal-flaw/ # DataBreach # CyberSec # Exploit # Ransomware