kazu

Ransomware
Sourceransomware.live
0

About the group

Kazu is an emerging ransomware group active since September 2025 that employs double-extortion tactics, targeting government, healthcare, and financial organizations primarily in Southeast Asia, the Middle East, and Latin America, with notable claimed breaches including Dubai's Ports, Customs and Free Zone Corporation with 1.94 TB exfiltrated.

Exploited vulnerabilities

No CVEs attributed to this group in public sources (MITRE ATT&CK). Absence of attribution does not mean absence of activity.

Impact and victims

The group kazu has 2 known ransomware victims. See the most affected sectors and countries and recent victims.

2known victims
2in Brazil
1sectors hit
Most attacked sectors
Healthcare2
Most affected countries
🇧🇷 Brasil2
Recent victims
Meducar: Telemedicine and Patient Management SystemHealthcare · BR · 2026-08-23
Brazil Mobilemed: Cloud PACS PlatformHealthcare · BR · 2026-08-23

kazu uses real techniques and exploits real flaws. TrueHacking's AI Autonomous Pentest simulates these attacks against your infrastructure and brings more security to your application.

Explore the AI Autonomous Pentest →