HIGHRansomware
Global

ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

·Source: BleepingComputer

Updated:

Executive Summary

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. [...]

Analysis

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. [...]
Source Attribution

Originally published by BleepingComputer on Sep 25, 2026.

Related Threats