Clop Ransomware Responds to ShinyHunters Amid Eight-Figure Demands
The escalating dispute between ShinyHunters and the Clop ransomware gang has taken another turn, with Clop apparently regaining the ability to publish on its compromised dark web site and posting a message asking ShinyHunters to make contact.
Hackread.com observed the latest change on September 21, 2026. Clop’s onion address, which had previously been taken over and repurposed by ShinyHunters, displayed a short message from the ransomware gang directed at ShinyHunters.
“Shiny Hunters we trying to reach you Your email does not work. Come online old platform no email,” the message read.
The development comes days after ShinyHunters compromised Clop’s data leak site (DLS) and replaced its normal content with ShinyHunters’ own material. The takeover went further than changing the appearance of the site. During the compromise, visitors accessing Clop’s onion address could download Salesforce-related data that ShinyHunters had also made available through its own leak site.
Hackread.com directly observed the...
Copyright of this story solely belongs to hackread.com. To see the full text click HERE