Grupo Ransomware: kawa4096
Perfil del grupo segun ransomware.anggipradana.com.
| Campo | Valor |
|---|---|
| Alias | |
| Pais | |
| Estado |
Descripcion
Kawa4096 is a ransomware group that emerged in June 2025, targeting multinational corporations across finance, education, and services sectors primarily in the US and Japan, using partial-encryption (25% of each file chunk) with Salsa20 and a leak site styled after Akira's retro terminal aesthetic, claiming at least 11 victims.