ShinyHunters breached Clop’s data leak site, defaced its Tor page, and claimed to steal server data, logs, source code, and the private keys for Clop’s onion service. The incident appears tied to an escalating feud between the two groups over earlier Oracle E-Business Suite attacks and alleged threats. #ShinyHunters #Clop #OracleEBusinessSuite #CVE202561882
Keypoints
- ShinyHunters used an alleged Grav CMS file upload flaw to access Clop’s leak site.
- The group defaced Clop’s Tor site with Umbreon ASCII art and a warning message.
- ShinyHunters claims it stole source code, Grav CMS plugins, and system logs.
- The attackers also say they obtained Clop’s Tor onion private keys.
- The breach is linked to a feud over Clop’s Oracle E-Business Suite extortion campaign.