Clop is a ransomware_group tracked across 50 threat clusters and 84 intelligence report mentions on ThreatCluster. First observed October 29, 2025; most recent activity July 24, 2026.
Barts Health NHS and Dartmouth College confirmed data breaches due to exploitation of a zero-day vulnerability in Oracle E-Business Suite software by Clop hackers. The breaches resulted in the compromise of personal…
Logitech International reported a data breach resulting from a zero-day vulnerability in third-party software. The breach involved unauthorized access to sensitive data, including information about employees and…
Logitech has confirmed a data breach resulting from a zero-day exploit that compromised its internal IT systems. The attack, attributed to the Clop extortion group, has likely affected customer data, raising concerns…
The Washington Post has confirmed it is a victim of the ongoing attacks targeting Oracle E-Business Suite, attributed to the Cl0p ransomware group. This breach is part of a larger campaign affecting numerous…
Logitech has confirmed a data breach resulting from a zero-day vulnerability in third-party software, which allowed unauthorized access to internal data. The breach, disclosed on November 14, 2025, did not impact…
Progress Software has issued urgent advisories regarding critical vulnerabilities in its MOVEit Automation platform, specifically CVE-2026-4670 and CVE-2026-5174. These vulnerabilities allow attackers to bypass…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding the active exploitation of a high-severity vulnerability in SolarWinds Serv-U, tracked as CVE-2026-28318. This flaw allows…
The Clop ransomware gang is actively exploiting a critical vulnerability (CVE-2026-12569) in PTC Windchill and FlexPLM systems, allowing unauthenticated remote code execution. This exploitation involves deploying JSP…
Two critical vulnerabilities, CVE-2026-2699 and CVE-2026-2701, have been identified in Progress ShareFile's Storage Zones Controller, allowing unauthenticated attackers to perform remote code execution and potentially…
Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025, a rise from 78 in 2024. Less than half of these vulnerabilities were attributed to specific threat actors, with spyware vendors…