Kazu claims data theft from MSM Unify

Published September 7, 2026

Kazu has listed MSM Unify as a victim and claims it took 1.45 TB of data while demanding $400,000. This is an extortion-site claim, not confirmation from MSM Unify or independent proof of theft.

Report priority
High
Involves
MSM Unify
Group
Kazu

What is known

  • How Kazu allegedly gained access is unknown.
  • Its data-theft claim doesn't establish that malware ran or that systems were encrypted.

What to do

First, check for a notice received through an established MSM Unify or educational institution contact. No notice doesn't prove that you're unaffected. Students and applicants should ask the institution handling their application whether it has received confirmation that their records were involved. MSM Unify's security team must use internal evidence to assess the claim because no public account lookup, affected-person list or reliable compromise check is available.

Follow instructions only from a verified MSM Unify or educational institution contact, and independently verify unexpected messages through a contact route you already use. This report doesn't establish whether MSM Unify has identified or fixed an underlying security problem.

Reported details

The Ransomware.live listing records a Kazu claim discovered on September 7, 2026, alleging theft of 1.45 TB and demanding $400,000. SOCRadar also lists the event as claimed. These listings don't independently confirm the theft.