gunra
Known ransomware group ACTIVE Currently active
Gunra is a financially motivated ransomware group that emerged in April 2025, using double-extortion tactics against real estate, pharmaceuticals, and manufacturing sectors across Japan, Egypt, Panama, Italy, and Argentina, deploying separate Windows and Linux variants with a strict five-day payment deadline.
3
Total Claims
0
Critical
—
Records Claimed
1
Industries Hit
Active span: May 22, 2026 – Jun 9, 2026 · 3 organizations targeted
Currently active
Actor Threat Profile
Activity Timeline
Peak: May 2026 (2)May 2026
LessMore
Jun 2026Top Targeted Industries
Business Services 2
Tradecraft & Infrastructure
0
Documented tools
0 / 0
MITRE tactics / techniques
2
Known leak sites