ShinyHunters hacks Clop leak site, threatens to extort ransomware gang
ID: 19f73de4-e810-52a8-8372-58dee70dda59
STIX ID: report--19f73de4-e810-52a8-8372-58dee70dda59
Feed Name: Bleeping Computer
Threat Score
ShinyHunters exploited an unauthenticated Grav CMS file upload to upload a message and later fully deface the Clop (Cl0p) ransomware group's Tor leak site; they claim to have stolen server data, system logs, source code, Grav plugins, and the Tor onion private keys, enabling them to host the same onion address and attempt to extort Clop, while BleepingComputer has independently confirmed the defacement but not all theft claims.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
