wannacry logo

wannacry

1 incidentes 0 paises 0 sectores ransomware KP Ultimo: 2026-06-25
Aliases: WannaCry, WRrypt, WCry, WCRY, Wana Decrypt0r 2.0, WanaCrypt0r 2.0, WanaCrypt0r, WCrypt
Ver en IntelTracker → APTTrail →
WannaCry is a self-propagating ransomware cryptoworm that first emerged in May 2017, rapidly spreading globally and causing significant disruption by exploiting a critical vulnerability in Microsoft Windows' Server Message Block (SMB) protocol. Attributed with high confidence to the North Korean-linked Lazarus Group, its primary motivation is financial extortion through the encryption of victim files, demanding cryptocurrency payments. What specifically set WannaCry apart was its dual functionality as both ransomware and a worm, enabling it to spread automatically across networks without user interaction once an initial compromise occurred, leveraging the EternalBlue exploit. This created an unprecedented global impact, infecting hundreds of thousands of computers in a short period, and it is also known as WannaCrypt, Wana Decrypt0r 2.0, or WCry.
Malware asociado
win.webmonitor, WannaCry, win.oski, win.privateloader, Agent Tesla, Qbot
Tecnicas MITRE
T1113, T1218, T1127, T1450, TA0004, T1063
CVEs relacionadas
CVE-2023-5129, CVE-2023-5009, CVE-2023-4966, CVE-2023-46748, CVE-2023-46747, CVE-2023-46604

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises objetivo (SOCRadar)

ArmeniaAustriaAustraliaBrazilBelarusCanadaSwitzerlandChinaColombiaGermany

Sectores objetivo (SOCRadar)

Construction of BuildingsMonetary Authorities-Central BankRail TransportationHospitalsManufacturingPublic AdministrationOil & GasEducational ServicesEnergy & Utilities Insurance

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com