Home / Sep 26, 2026 / Story
0
#6 BleepingComputer general September 25, 2026 at 20:57 UTC

ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

By Lawrence Abrams

AI Summary

ShinyHunters compromised and defaced Clop ransomware gang's data leak site by exploiting an unpatched unauthenticated path traversal vulnerability in Grav CMS, forcing Clop to migrate to a new Tor address. The incident is a rare case of one criminal group hacking another's infrastructure and demonstrates that ransomware operators' own OPSEC and patching hygiene can be exploited. Security researchers tracking Clop victim disclosures should note the new Tor address.

Relevance score: 80.0/100

# More from September 26