Skip to main content
CyberUnknownMediumDeveloping
4.9

ShinyHunters deface Clop leak site via Grav CMS path traversal; Clop relocates

Clop ransomware gang confirmed its Tor leak site was compromised and defaced via an unauthenticated path traversal vulnerability in Grav CMS, attributed to ShinyHunters. Clop has since moved to a new Tor address. This marks a notable offensive against a major ransomware group, potentially disrupting their extortion operations and exposing internal infrastructure.

BleepingComputer1 day agoengCredibility 21%View source

Score Breakdown

Mosaic Score4.9
Model confidence0.5
Significance0.5
Source credibility0.2
Source

Related signals

8 found