#StopRansomware: Gunra Ransomware
ID: 9bfa816e-8b02-5adb-be74-08321299d264
STIX ID: report--9bfa816e-8b02-5adb-be74-08321299d264
Feed Name: CISA Cybersecurity Advisories
Threat Score
This joint advisory details the Gunra ransomware RaaS: a double-extortion group active since 2025 that exfiltrates large volumes of data and encrypts systems across Windows and Linux environments, leverages exploited internet-facing vulnerabilities (including VPN/SSL appliances), maintains a Tor-based leak site and negotiation portal, and provides comprehensive TTP mappings, IOCs, mitigations, and incident response guidance for affected sectors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
