ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw
Posted by PrivacyWire
The compromise shows that even ransomware groups’ leak infrastructure can be exposed through basic unpatched server flaws, potentially affecting the availability and integrity of information about victims. It also highlights how security failures in systems used to publish stolen data can change what is visible to the public and complicate efforts to track surveillance and breaches. Have you seen similar cases where an attacker’s own infrastructure was compromised and what lessons did you take from them?