wannacry
1 incidentes
0 paises
0 sectores
ransomware KP Ultimo: 2026-06-25
Aliases: WannaCry, WRrypt, WCry, WCRY, Wana Decrypt0r 2.0, WanaCrypt0r 2.0, WanaCrypt0r, WCrypt
WannaCry is a self-propagating ransomware cryptoworm that first emerged in May 2017, rapidly spreading globally and causing significant disruption by exploiting a critical vulnerability in Microsoft Windows' Server Message Block (SMB) protocol. Attributed with high confidence to the North Korean-linked Lazarus Group, its primary motivation is financial extortion through the encryption of victim files, demanding cryptocurrency payments. What specifically set WannaCry apart was its dual functionality as both ransomware and a worm, enabling it to spread automatically across networks without user interaction once an initial compromise occurred, leveraging the EternalBlue exploit. This created an unprecedented global impact, infecting hundreds of thousands of computers in a short period, and it is also known as WannaCrypt, Wana Decrypt0r 2.0, or WCry.
RansomLook pivots
Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.
Abrir perfil →
Paises objetivo (SOCRadar)
Armenia
Austria
Australia
BrazilBelarus
Canada
Switzerland
China
Colombia
Germany
Sectores objetivo (SOCRadar)
Construction of BuildingsMonetary Authorities-Central BankRail TransportationHospitalsManufacturingPublic AdministrationOil & GasEducational ServicesEnergy & Utilities Insurance
URLs nuevas detectadas en IntelTracker