Back to all news
Security

ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

BleepingComputer·September 25, 2026·1 min read
ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

The Clop ransomware gang moved its data leak site to a new Tor address after confirming its previous server was compromised via an unauthenticated path traversal vulnerability in Grav CMS. The flaw, exploited by ShinyHunters, allowed the defacement, prompting the group to relocate its operations to a fresh dark web domain.

Read at BleepingComputer
Daily crypto arcade

Read the news, then play it.

Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.

Open ChainshortsGet it on the Solana dApp Store