Inside Gunra RaaS: From Affiliate Recruitment on the Dark Web to Full Technical Dissection of their Locker
ID: 925c2842-3a8b-57eb-8676-d6d7dffdf6fa
STIX ID: report--925c2842-3a8b-57eb-8676-d6d7dffdf6fa
Feed Name: CloudSEK Blog
Threat Score
**Executive Summary:** CloudSEK researchers uncovered and analyzed Gunra, a professional Ransomware-as-a-Service (RaaS) with a newly launched affiliate program; through HUMINT they obtained management-panel credentials and a live sample and produced a detailed static and dynamic analysis, IOCs (file hashes, .ENCRT extension, R3ADM3.txt, Tor payment portal), MITRE ATT&CK mappings, and actionable mitigation recommendations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
