#6
BleepingComputer
general
September 25, 2026 at 20:57 UTC
ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw
By Lawrence Abrams
AI Summary
ShinyHunters compromised and defaced Clop ransomware gang's data leak site by exploiting an unpatched unauthenticated path traversal vulnerability in Grav CMS, forcing Clop to migrate to a new Tor address. The incident is a rare case of one criminal group hacking another's infrastructure and demonstrates that ransomware operators' own OPSEC and patching hygiene can be exploited. Security researchers tracking Clop victim disclosures should note the new Tor address.
Relevance score: 80.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →