U.S., South Korean government agencies caution to be on lookout for Gunra ransomware gang
ID: 0c7693ef-e45f-5428-8891-8cccc581266e
STIX ID: report--0c7693ef-e45f-5428-8891-8cccc581266e
Feed Name: CyberScoop
U.S. and South Korean cyber agencies issued an alert about Gunra, a ransomware-as-a-service group that targets government and critical infrastructure sectors worldwide, operates a Tor-based data leak site, and has commercialized by recruiting penetration testers and ethical hackers as initial access brokers. The advisory notes Gunra leverages known vulnerabilities in internet-facing devices, is influenced by leaked Conti ransomware code, and shows overlap with North Korean-linked tools, signaling a sophisticated and expanding double-extortion threat.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
