Ransomware victim disclosure
← All victimsCozad Asset Management
Claimed by Akira · listed 4 days ago
Status timeline
- ListedAug 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Akira
- Status
- Data leaked
- Country
- United States
- Sector
- Financial Services
- Listed on leak site
- Aug 14, 2026
About the victim
AI dossier — public-source company profileCozad Asset Management, Inc. is a financial services firm providing professional investment advisory and wealth management services to individuals, families, and institutional investors across the United States.
- Industry
- Financial Services
Attack summary
Severity: critical — Confirmed exfiltration of highly sensitive regulated data including PII at scale (employee SSNs, government IDs, passports) and financial information from a regulated financial services firm; financial sector data is subject to multiple compliance regimes (GLBA, SEC, etc.)The Akira group claims to have exfiltrated approximately 13 GB of corporate data, including employee personal information (passports, driver's licenses, Social Security numbers), financial records, confidential files, contracts, agreements, and legal documents.
Data the group says was taken
AI dossier — extracted from the leak post- Employee personal information (passports, driver's licenses, SSNs)
- Financial records
- Confidential corporate files
- Contracts and agreements
- Legal files
What the group claims
Cozad Asset Management, Inc. provides the highest quality professional and personalized financi al services and advice to individuals, families and institutional investors throughout the coun try. We will upload 13gb corporate data soon. Employee personal information (passport, DLs, SSN), fi nancials, confidential files, contracts and agreements, legal files and so on.
Source
Indexed 4 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

