Korea, US issue joint advisory on 'Gunra' ransomware attacks
Police on Tuesday called on domestic companies and institutions to strengthen their security against a ransomware variant named "Gunra," as they jointly released details of its latest attack methods with U.S. authorities. The Korean National Police Agency (KNPA) said it has distributed a joint cybersecurity advisory regarding the Gunra ransomware with U.S. agencies, including the Federal Bureau…
On Tuesday, authorities from South Korea and the United States jointly issued a cybersecurity advisory warning organizations about the Gunra ransomware. The Korean National Police Agency (KNPA) collaborated with U.S. agencies, such as the Federal Bureau of Investigation (FBI) and the National Security Agency, to issue the advisory. Ransomware is a type of malicious software that encrypts data or blocks access to it until a ransom is paid.
The advisory provides details about the latest attack methods employed by the Gunra ransomware variant. First appearing in 2025, Gunra has evolved into a ransomware-as-a-service operation, targeting governments, critical infrastructure, and various sectors such as finance, healthcare, and manufacturing. The KNPA explained that Gunra ransomware gangs breach networks and demand payment in exchange for restoring access to encrypted data.
By sharing information on Gunra's attack techniques and indicators of compromise, the advisory aims to help organizations strengthen their security measures against this ransomware threat.
Written by urgent.news from The Korea Times's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.