Skip to content
The Nexus
Group profile9 claimed in last 30d9 total tracked

kazu

Forward this

Kazu is an emerging ransomware group active since September 2025 that employs double-extortion tactics, targeting government, healthcare, and financial organizations primarily in Southeast Asia, the Middle East, and Latin America, with notable claimed breaches including Dubai's Ports, Customs and Free Zone Corporation with 1.94 TB exfiltrated.

First seen: Aug 23 · 08:07 UTCLast seen: Aug 23 · 08:10 UTCTracked since: 2025-11-11
Sectors hit
  • Healthcare8
  • Professional Services1
Countries hit
  • United States2
  • Mexico2
  • Brazil2
  • Pakistan1
  • Canada1
  • Argentina1
Recent claimed victims
HealthcareUnited StatesAug 23 · 08:10 UTC

PappyJoe: Healthcare Management System

pappyjoe.com
HealthcareArgentinaAug 23 · 08:10 UTC

Instituto Ferrero de Neurología y Sueño

ifn.com.ar
HealthcareBrazilAug 23 · 08:09 UTC

Brazil Mobilemed: Cloud PACS Platform

mobilemed.com.br
Professional ServicesCanadaAug 23 · 08:09 UTC

Canada Yocale: Appointment Management System

www.yocale.com
HealthcareUnited StatesAug 23 · 08:08 UTC

PawlyClinic: Digital Veterinary Care Platform

www.pawlyclinic.com
HealthcarePakistanAug 23 · 08:08 UTC

Dr Akbar Niazi Teaching Hospital

www.anth.pk
HealthcareMexicoAug 23 · 08:08 UTC

Centro Médico Especializado OSI: Healthcare Solutions

centromedicoosi.com
HealthcareBrazilAug 23 · 08:07 UTC

Meducar: Telemedicine and Patient Management System

meducar.com
HealthcareMexicoAug 23 · 08:07 UTC

ConsultorioMovil: Telemedicine and Healthcare System

consultoriomovil.net