Kazu — Ransomware Profile
Kazu is an emerging ransomware group active since September 2025 that employs double-extortion tactics, targeting government, healthcare, and financial organizations primarily in Southeast Asia, the Middle East, and Latin America, with notable claimed breaches including Dubai's Ports, Customs and Free Zone Corporation with 1.94 TB exfiltrated.IntelFusions coverage (1)
- Ransomware crew targets the software clinics run on 2026-08-27 · Ransomware
Recent claimed victims
- Redacted 2026-08-25
- Instituto Ferrero de Neurología y Sueño 2026-08-23
- Brazil Mobilemed: Cloud PACS Platform 2026-08-23
- Canada Yocale: Appointment Management System 2026-08-23
- PawlyClinic: Digital Veterinary Care Platform 2026-08-23
- PappyJoe: Healthcare Management System 2026-08-23
- Centro Médico Especializado OSI: Healthcare Solutions 2026-08-23
- Meducar: Telemedicine and Patient Management System 2026-08-23
- ConsultorioMovil: Telemedicine and Healthcare System 2026-08-23
- Dr Akbar Niazi Teaching Hospital 2026-08-23