The Chonkerton

Feds warn Gunra ransomware is exploiting known bugs to hit critical infrastructure

tech

U.S. federal agencies are sounding the alarm about Gunra ransomware, which now operates as a service for cybercriminals worldwide. The Register reports that the gang is actively exploiting two known security flaws in Fortinet's FortiOS and FortiProxy to break into networks and gain administrative access. Once inside, attackers follow a double-extortion strategy: steal sensitive data, encrypt critical systems, and demand payment within five to seven days before threatening to publish the stolen information. Gunra has already targeted healthcare, financial services, government agencies, and nonprofits across multiple continents, with variants designed to run on both Windows and Linux systems. Federal agencies including CISA, the FBI, and NSA are urging organizations to immediately patch the known vulnerabilities and secure remote access with multifactor authentication.

Source: https://www.theregister.com/cyber-crime/2026/08/11/feds-w...

Listen to this story

Hear this and more stories in a personalized audio briefing.

Open The Chonkerton