Urgent.News

What's breaking now, across thousands of outlets.

Tech

Clop gets a taste of its own medicine after ShinyHunters hijack leak site

Rival crew demands eight figures and threatens to expose companies that paid to keep quiet

Clop gets a taste of its own medicine after ShinyHunters hijack leak site

Rival cybercrime crew ShinyHunters has taken control of Clop's leak site and is now demanding an eight-figure ransom. The intrusion occurred over the weekend when the tagline "rooting your systems since 19 ;)" was replaced with a large "DOMAIN SEIZED BY SHINYHUNTERS" banner. ShinyHunters claims to have exploited a software vulnerability, granting them extensive access to Clop's infrastructure.

The group asserts it has been a long-standing feud, dating back to Clop's attacks on Oracle E-Business Suite customers last year. ShinyHunters now seeks a share of the proceeds, threatening to publish the names of companies that allegedly paid Clop and the amounts involved. The clash has the potential to damage Clop's reputation further, as leak sites are meant to demonstrate control and possession of stolen data.

Written by urgent.news from The Register Science's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Also reported by 2 other outlets

Read the original at theregister.com →

More in Tech

Keep Free Lanes Off the Signed Webhook Path

The billing webhook stalled for forty-one silent seconds. The payment provider sent the same event again. A free-lane agent was still classifying intent. The worker then granted store credit twice.

  • Free lanes must not be on signed webhook paths
  • Duplicate deliveries discovered before dawn
  • Public endpoint on preemptible free server

More from Monday 21 September →