Группировка ShinyHunters взломала сайт хак-группы Clop
IncidentGrav CMSShinyHuntersOur summary
ShinyHunters claims it breached and defaced the Tor leak site operated by the Clop (Cl0p) ransomware group, using an unauthenticated file-upload flaw in Grav CMS. The group says it obtained source code, server logs and onion-service private keys, which could expose operational data and let it recreate Clop's onion address; it plans to extort Clop following a dispute tied to Clop's exploitation of CVE-2025-61882 against Oracle E-Business Suite.
Хакер (xakep.ru) publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.