Ransomware victim disclosure
← All victimsMajani Insurance Brokers
Claimed by Vexy Ransomware · listed 5 hours ago
Status timeline
- ListedSep 25, 2026
- Data leakeddate unknown
At a glance
- Group
- Vexy Ransomware
- Status
- Data leaked
- Country
- Kenya
- Sector
- Financial Services
- Listed on leak site
- Sep 25, 2026
About the victim
AI dossier — public-source company profileMajani Insurance Brokers Ltd is an independent insurance broker based in Nairobi, Kenya, with over 48 years of experience serving both businesses and individuals across East Africa. They arrange insurance products including general business, motor, medical, life, investment, marine, liability, property and agricultural covers.
- Industry
- Insurance Brokerage
- Address
- 5th Floor Chai House, Koinange Street, Nairobi, Kenya
- Founded
- 1976
Attack summary
Severity: medium — Disclosed status indicates data_published, suggesting exfiltration occurred; however, no proof files, screenshots, or specific data inventory is documented in the leak post. Insurance broker operations typically involve customer PII and financial data, warranting medium severity pending evidence of actual sensitive data disclosure.Vexy ransomware group claims to have attacked Majani Insurance Brokers. The leak post does not specify whether data was exfiltrated, encrypted, or both, nor does it detail what specific data categories are at stake.
What the group claims
Majani Insurance Brokers is an independent insurance broker serving both businesses and individuals. It arranges insurance products across areas including general business insurance, motor, medical, life, investment, marine, liability, property and agricultural-related covers
Sources
- Victim sitemajaninsure.com
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

