# Joe Roosen

Type: Person

Source: Cyber Intelligence Brief — https://getcyberbrief.com/entity/joe-roosen
Canonical HTML page: https://getcyberbrief.com/entity/joe-roosen

## Timeline

- **2026-09-20**: ShinyHunters publicizes the hijack — ShinyHunters tells Reuters 'We basically own them now'; Reuters finds cl0p's site unreachable and receives no comment from cl0p.
- **2026-09-19**: Seizure message appears on cl0p site — Screenshot preserved by eCrime.ch shows cl0p's dark web site displaying 'Domain Seized By ShinyHunters.'
- **2026-09-18**: ShinyHunters breaches cl0p infrastructure — ShinyHunters says it found a vulnerability in cl0p's software and used it to establish wide-ranging control over the group's dark web infrastructure.
- **2025**: Alleged theft of Oracle EBS zero-day — ShinyHunters claims it discovered a zero-day flaw in Oracle E-Business Suite, but cl0p allegedly stole the exploit and later used it to steal data from more than 100 companies.

## Recent coverage (1 stories)

### ShinyHunters Hijacks Cl0p Domain in Oracle Zero-Day Feud; 100+ Firms Impacted
2026-09-21 20:50:15 · Sentiment: Neutral · Impact: 5/10 · Sources: 4

ShinyHunters claims it seized cl0p's dark web infrastructure after a dispute over an Oracle E-Business Suite zero-day that hit more than 100 companies. Threat intelligence teams should view the public feud as a rare window into criminal infrastructure and possible leaked victim data. Monitoring for follow-on disclosures is the immediate priority.
Full story: https://getcyberbrief.com/story/shinyhunters-hijacks-cl0p-oracle-zero-day-feud

---
This page is a machine-readable summary. Sentiment measures the directional read of each development for this entity, not the tone of the reporting; impact weights consequence, not syndication reach. See https://getcyberbrief.com/guides/methodology for the full editorial methodology.