CVE Tools

Группировка ShinyHunters взломала сайт хак-группы Clop

Хакер (xakep.ru)By Мария Нефёдова

IncidentGrav CMSShinyHunters

Our summary

ShinyHunters claims it breached and defaced the Tor leak site operated by the Clop (Cl0p) ransomware group, using an unauthenticated file-upload flaw in Grav CMS. The group says it obtained source code, server logs and onion-service private keys, which could expose operational data and let it recreate Clop's onion address; it plans to extort Clop following a dispute tied to Clop's exploitation of CVE-2025-61882 against Oracle E-Business Suite.

Read at Хакер (xakep.ru)

Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store