GU

gunra

Known ransomware group ACTIVE
Currently active

Gunra is a financially motivated ransomware group that emerged in April 2025, using double-extortion tactics against real estate, pharmaceuticals, and manufacturing sectors across Japan, Egypt, Panama, Italy, and Argentina, deploying separate Windows and Linux variants with a strict five-day payment deadline.

3

Total Claims

0

Critical

Records Claimed

1

Industries Hit

Active span: May 22, 2026 – Jun 9, 2026 · 3 organizations targeted

Currently active
Activity 3.8 Severity 2.5 Sectors 2.3 Tooling 0.0

Actor Threat Profile

Activity Timeline

Peak: May 2026 (2)
May 2026
LessMore
Jun 2026

Share this profile

Shareable intel card for gunra

Top Targeted Industries

Business Services 2

Tradecraft & Infrastructure

0

Documented tools

0 / 0

MITRE tactics / techniques

2

Known leak sites

Full intelligence profile on ransomware.live →

Claims by gunra

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.