kazu logo

kazu

3 incidentes 2 paises 3 sectores ransomware RU Ultimo: 2026-06-25
Ver en IntelTracker → APTTrail →
Kazu is a financially motivated ransomware group that emerged in early to mid-2025, operating a double extortion model by exfiltrating sensitive data prior to encrypting files and demanding payment. The group primarily targets government agencies, public-sector institutions, healthcare providers, and financial services organizations globally, with a notable focus on Latin America, Southeast Asia, and the Middle East. Kazu distinguishes itself by consistently leveraging dark web leak sites and social media channels to announce victims and pressure them into paying ransoms, frequently posting proof of stolen data from compromised entities.

RansomLook pivots

Data, inteligencia y referencias externas para contrastar actividad ransomware del actor.

Abrir perfil →
Data
RecentBrowseTrendingStats
Intel
GroupURLsCryptoLeaksNotesAnalysesTorrents
Info
APIGlossaryAbout
Victimas
2
TTPs unicas
1
Info robada historica
N/D
Rescates reclamados
N/D
Pagos detectados
N/D

TTPs observadas

T1566 Phishing

Paises afectados

United States (1) Spain (1)

Paises objetivo (SOCRadar)

United Arab EmiratesArgentinaBolivia, Plurinational State ofCanadaSwitzerlandColombiaCosta RicaSpainFranceUnited Kingdom

Sectores atacados

Technology (1) Business Services (1) Healthcare (1)

Sectores objetivo (SOCRadar)

Construction of BuildingsOther Information ServicesSoftware PublishersHospitalsConstructionPublic AdministrationEducational ServicesSpace & DefenseEnergy & Utilities Insurance

URLs nuevas detectadas en IntelTracker

ransomware.anggipradana.com

Victimas (2)

zHealthEHR -- Practice Management Software for Chiropractic & Wellness Clinics26 Jan 2026
Ransomware United States Technology
Resumen Se reporta un ataque de ransomware contra la plataforma zHealthEHR, una solución de gestión de prácticas para clínicas de fisioterapia y biene…
MyVete12 Jan 2026
Ransomware Spain Business Services
Resumen MyVete, un software de gestión para clínicas veterinarias, fue objeto de un ataque de ransomware atribuido al grupo kazu. El incidente ocurrió…