Korea, US issue joint advisory on 'Gunra' ransomware attacks
Police on Tuesday called on domestic companies and institutions to strengthen their security against a ransomware variant named "Gunra," as they jointly released details of its latest attack methods with U.S. authorities. The Korean National Police Agency (KNPA) said it has distributed a joint cybersecurity advisory regarding the Gunra ransomware with U.S. agencies, including the Federal Bureau…
The Korean National Police Agency (KNPA) and U.S. authorities have issued a joint advisory warning domestic companies and institutions to bolster their security measures against a ransomware variant known as Gunra. The KNPA shared this advisory with key U.S. agencies such as the Federal Bureau of Investigation (FBI) and the National Security Agency.
Ransomware, a term combining ransom and software, entails malicious codes that hackers employ to encrypt or obstruct access to data, compelling victims to pay a ransom to regain access. The joint advisory provides details on Gunra's latest attack methods and indicators of compromise to assist organizations in safeguarding their networks from ransomware attacks.
First identified in 2025, Gunra has recently transformed into a ransomware-as-a-service operation, targeting government entities, critical infrastructure, and various sectors such as finance, healthcare, and manufacturing. The advisory states that Gunra ransomware gangs breach computer systems, encrypt critical data, and demand payment in exchange for decryption keys.
Written by urgent.news from The Korea Times's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.