CyberNotableUnknownDeveloping
4.9
ShinyHunters deface Clop leak site via Grav CMS path traversal; Clop relocates
BleepingComputerLO·1 day ago
ShinyHunters is using a URL-encoding trick to bypass WAF rules for CVE-2026-35273, resuming widespread exploitation of vulnerable Oracle PeopleSoft servers. The bypass undermines existing mitigations, increasing risk for unpatched organizations. The full scope of affected systems remains unclear.