NEW by me:
ShinyHunters escalates dispute with FBI; claims to have seized job applicants' site and acquired data
First, they threatened Clop this week, and now the FBI.
Some will disagree with me strongly, but I actually agree with ShinyHunters on some of their objections to a May 2026 FBI bulletin about them. That still doesn't excuse them hacking and extorting them, of course.
https://databreaches.net/2026/09/22/shinyhunters-escalates-dispute-with-fbi-claims-to-have-seized-job-applicants-site-and-acquired-data/
#databreach #govsec #cybersecurity #extortion #ShinyHunters #FBI #Cl0p
#cl0p
9 posts · Last used 15d
Cl0p Targets PTC Windchill via CVE-2026-12569 RCE Flaw
🔗 https://cybersecurefox.com/en/ptc-windchill-cve-2026-12569-flexplm-cl0p
#ptc #windchill #cve-2026-12569 #cl0p #flexplm #plm #security
Clop extortion group tied to hits on Boston-based PTC's popular product life cycle management software. https://www.databreachtoday.com/clop-tied-to-ptc-product-lifecycle-management-software-hits-a-32333 #cl0p #clop #ransomware
Cl0p Exploitation of PTC Windchill & FlexPLM (CVE-2026-12569)
#Cl0p #CVE_2026_12569https://ransom-isac.org/blog/clop-windchill-flexplm-exploitation/
🤖 Cl0p ransomware affiliates actively exploiting PTC Windchill & FlexPLM in data extortion campaigns. Chain: pre-auth info disclosure via FlexPLM WSDL endpoint + server-side flaw in Windchill login servlet → unauthenticated RCE. Internet-exposed instances targeted.
🔗 https://thehackernews.com/2026/07/cl0p-affiliates-target-internet-exposed.html
#Cl0p #RCE #CyberSec
🤖 Cl0p (FIN11) affiliates actively exploiting internet-exposed PTC Windchill & FlexPLM. Attack chain: pre-auth info disclosure in FlexPLM WSDL + server-side flaw in Windchill login servlet → unauthenticated RCE. Data extortion campaign underway.
🔗 https://thehackernews.com/2026/07/cl0p-affiliates-target-internet-exposed.html
#Cl0p #RCE #CyberSec #Exploit
🤖 Cl0p affiliates actively exploiting unauthenticated RCE in internet-exposed PTC Windchill & FlexPLM deployments. Attack chain: pre-auth info disclosure chained with server-side flaw in login servlet → unauthenticated RCE. Data extortion campaign active.
🔗 https://thehackernews.com/2026/07/cl0p-affiliates-target-internet-exposed.html
#RCE #Cl0p #InfoSec #CyberSec
Replying to
This is a phase-two boss with a global campaign already in motion, and your engineering IP is the loot table.
Windchill runs the intellectual backbone of industrial civilization. Cl0p knows this. Patch PTC Windchill to the latest version immediately and hunt for indicators of compromise before the second wave.
Reward: You've received the Scorched Drafting Table — a Legendary trophy nobody wanted to earn.
#Cl0p #Ransomware #ZeroDay #PTCWindchill #CyberSecurity #CriticalHit (2/2)
La santé sous perfusion, face aux cyberattaques
Longtemps, les hôpitaux comme les cabinets médicaux, ont été des refuges. Des lieux où l’on venait chercher un remède, un répit, parfois une espérance.
En février 2026, la France découvre que 19 millions de patients ont leurs données administratives compromises dans une fuite liée à l’éditeur de logiciels médicaux Cegedim.
L’incident ne vise pas directement les serveurs de l’entreprise, mais les comptes professionnels de médecins utilisant ses outils. Au-delà du choc, cette affaire révèle une transformation profonde : la médecine est devenue l’une des nouvelles cibles privilégiées du cybercrime industriel.
https://librexpression.fr/au-chevet-du-malade-assailli-de-cyberattaques
(Crédits : Sarci Filippo/Pixabay)
#akira #cegedim #Cl0p #email #cyberattack #databreaches #eastwood #europe #europol #France #IA #informatique #infostealers #kidflix #librexpression #NIS2 #phishing #raas #ransomware #saas #spearphishing #threaths #warfare
You've seen all posts


