CURRENT MISSION: Conclude the 2026 soyjak.party hack page, aswell as any pages relating to it, such as the Summer 2026 Crisis page.
Update Quotecord with any relevant info. See the blackboard for more info.
2026 soyjak.party hack

Check again later for more coverage.


On August 11, 2026, at 6:11 AM UTC, a Shiwi user under the name of Zhambyl Tulegbenpenov would claim that the reason behind the 2026 outage and subsequent Second Great Handover was because soyjak.party was hacked and had its source code stolen. [1] In his post, he stated that he hated niggers, trannies, and Jews and then linked the leak in a gofile link. The link contains a 2.6GB file named "vichan.zip" which contains the Sharty's Vichan fork along with some Telegram channel export. Later that day at 3:02 PM UTC, another Kiwi Farms user under the name Femtanyl (who was also responsible for the 'ru source code leak) later claimed that the hack was done by a Soycord of failtrolls and that the hacker(s) had exploited an RCE vulnerability within Quote's MPA system.[2] That is to say they uploaded a malicious executor of some kind to the server via the MPA system, similar to how 4cuck was hacked.
Pre-leak
The hack was allegedly done by a Soycord, in which it likely spread around after to other groups and eventually got to Zhambyl. The source code was then kept secret and Quote blamed the downtime on hard drive failures while transferring servers.[3]
Reaction
Reactions have been relatively underwhelming on the Sharty, mainly due the fact that it's been too little time for anyone to realize the extent of how bad this can be. A thread on /soy/ was posted in which users either did not care or made connections to theories of Salt being Quote, leading to the thread being largely ignored. [4] The hackers also didn't try to fuck things up and do a reverse Cuckset... yet.
What's included
- McChallenge (found in "
js/captcha/static") - Secure tripcode salt[a]
- Banned user agents
- Source code for the 2026 April Fools frontend (found in "
frontend") - Moderation guidelines and a bunch of janny shit
- Discord webhooks
- Hardcoded integrity bans

- (hashed) Admin password
Suspiciously, integrity.js is nowhere to be found in this leak, despite being linked to multiple times. Nusoi.. it wouldn't work either way integrity's changed 
IP leak
The next day an alleged .txt of 2000 IP addresses from sharty posters was leaked. Some interesting things include that over 178 IP addresses belonged to the US Department of Defense[b], and some other glowie stuff like 1 place in Turkey, another in Australia and an "Internet Research Organization" in Japan.[5]
Download
You either have Gofile, Magnet or Torrent.
Notes
- ↑ The salt is
OSSL.4lNNPl85dg+m5OmYnDRgy4XmRZYmXYV7wN+1Pwkb9mjGZ8mmyHvoUZVXQvCvrl4FGKVIyWqhpQJu55N4RcW/rZd3wYABmCwd4hENkvQNUWD9d6Zc/k54LUn4q3yqj8ffHGokSh+yUnc/qhusSd/IzVbyBWjVkWmM6+Uf86uPHKU= - ↑ before the schizos raise hell over this and declare that the defense intelligence agency is trying to take over the site, every www ip within the US military shows up as the DoD as the ISP (or just "US Military") meaning this was probably just people in the military, civilian contractors, family or otherwise who happened to be living on base. THOUGHEVERBEIT in this case nearly all of the IPs show up as being in Columbus, Ohio, where the DNIC is. This means that this is probably just random people being routed by their ISPs through to DoD IP ranges as the internal block which still shows up on traceroute as a DoD address, but it isn't actually going to or from the DoD.
Snopes
- ↑ https://megalodon.jp/2026-0812-0013-44/https://kiwifarms.st:443/threads/soyjak-party-the-sharty.145349/post-25216920
- ↑ https://megalodon.jp/2026-0812-0009-09/https://kiwifarms.st:443/threads/soyjak-party-the-sharty.145349/page-5691
- ↑ Special:PermanentLink/458200
- ↑ https://megalodon.jp/2026-0812-0134-22/https://soyjak.st:443/soy/thread/17018764.html
- ↑ https://megalodon.jp/2026-0812-0233-55/https://soyjak.st:443/soy/src/1786461178355u-1.txt


