Cyber

ShinyHunters hacks Clop ransomware leak site using Grav CMS flaw

The notorious Clop ransomware gang has migrated its data leak site to a new Tor address after hackers compromised their previous server via a Grav CMS vulnerability.

·1 min read
ShinyHunters hacks Clop ransomware leak site using Grav CMS flaw

The notorious Clop ransomware operation has relocated its data leak site to a new Tor address following a security breach. It was revealed that a rival hacker collective, ShinyHunters, successfully compromised and defaced their previous server.

According to security reports, the breach was executed by exploiting an unpatched, unauthenticated path traversal vulnerability within the Grav CMS platform used by the gang. This critical security flaw allowed unauthorized access to the underlying system.

The successful compromise of a major ransomware group's infrastructure highlights how even cybercriminal operations can fall victim to poor patch management and software vulnerabilities. Following the incident, Clop quickly moved its operations to a new location to mitigate the damage.

This event serves as another reminder of the critical importance of keeping content management systems and server software updated with the latest security patches across the entire digital ecosystem.

#Clop#ShinyHunters#Kiberxavfsizlik#Ransomware#Grav CMS#BleepingComputer

Related articles