U.S. and South Korean cyber agencies warned that the Gunra ransomware-as-a-service group is recruiting ethical hackers and penetration testers while leveraging tools linked to North Korean government-backed hackers. The group has targeted government and critical infrastructure organizations worldwide and appears to have ties to the Conti code leak and possible overlap with Lazarus Group. #Gunra #LazarusGroup #Conti #CISA #FBI #NSA #SecretService #RepublicofKoreaNationalPoliceAgency
Keypoints
- Gunra is a ransomware-as-a-service operation under joint U.S. and South Korean warning.
- The group recruits ethical hackers and penetration testers as initial access brokers.
- Gunra targets government and critical infrastructure organizations across multiple regions.
- The ransomware is based on or influenced by the leaked Conti code.
- Researchers noted possible overlap with Lazarus Group and North Korean-linked tools.
Read More: https://cyberscoop.com/us-south-korea-gunra-ransomware-warning/