Uptime Hamster: 12d 21h 57mDeploy: 14 Jul 2026 21:26Updated: 2026-07-21
Logo del actor de amenaza wannacry

wannacry

2 incidentes 1 paises 1 sectores ransomware KP Ultimo: 2026-06-29
Aliases: WannaCry, WRrypt, WCry, WCRY, Wana Decrypt0r 2.0, WanaCrypt0r 2.0, WanaCrypt0r, WCrypt, WannaCrypt
Ver en IntelTracker → APTTrail →
WannaCry is a self-propagating ransomware cryptoworm that first emerged in May 2017, rapidly spreading globally and causing significant disruption by exploiting a critical vulnerability in Microsoft Windows' Server Message Block (SMB) protocol. Attributed with high confidence to the North Korean-linked Lazarus Group, its primary motivation is financial extortion through the encryption of victim files, demanding cryptocurrency payments. What specifically set WannaCry apart was its dual functionality as both ransomware and a worm, enabling it to spread automatically across networks without user interaction once an initial compromise occurred, leveraging the EternalBlue exploit. This created an unprecedented global impact, infecting hundreds of thousands of computers in a short period, and it is also known as WannaCrypt, Wana Decrypt0r 2.0, or WCry.

Aliases del actor

WannaCryWRryptWCryWCRYWana Decrypt0r 2.0WanaCrypt0r 2.0WanaCrypt0rWCryptWannaCrypt

Canales, DLS e infraestructura asociada

Clasificacion automatica desde IntelTracker/APTTrail/OSINT. Estado real solo si viene indicado por la fuente.

TipoEstadoHost / enlaceTitle / ultimo titulo
DLS / leak siteunknownransomware.anggipradana.comRansomware Group: wannacry
Malware asociado
win.webmonitor, WannaCry, win.oski, win.privateloader, Agent Tesla, Qbot
Tecnicas MITRE
T1113, T1218, T1127, T1450, TA0004, T1063
CVEs relacionadas
CVE-2023-5129, CVE-2023-5009, CVE-2023-4966, CVE-2023-46748, CVE-2023-46747, CVE-2023-46604
Victimas
0
TTPs unicas
0
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

Paises afectados

United States (1)

Paises objetivo (SOCRadar)

ArmeniaAustriaAustraliaBrazilBelarusCanadaSwitzerlandChinaColombiaGermany

Sectores atacados

Software (1)

Sectores objetivo (SOCRadar)

Construction of BuildingsMonetary Authorities-Central BankRail TransportationHospitalsManufacturingPublic AdministrationOil & GasEducational ServicesEnergy & Utilities Insurance

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com