Ransomware Group ‘Pear’ Claims Attack on Kovo Healthtech Corp

A ransomware group calling itself ‘Pear’ claims to have carried out a cyberattack against Kovo Healthtech Corp, with the claim dated September 2, 2026. This claim originates from an entry on the group’s own dark-web leak-site listing, which was tracked and cataloged by ransomware.live, a security research platform that monitors the public extortion sites operated by ransomware groups. At this time, the claim has not been independently verified, and Kovo Healthtech Corp has not issued any public confirmation of an incident.

What we know — and don’t
  • A group identifying itself as ‘Pear’ listed Kovo Healthtech Corp on its leak site with a claimed date of September 2, 2026.
  • Kovo Healthtech Corp operates in the healthcare sector, based on available information about the company’s activities.
  • The specific types of data the group claims to have obtained — such as personal, medical, or financial records — have not been disclosed or confirmed by any party.
  • No regulator or official body has confirmed a breach at this time, and Kovo Healthtech Corp has not issued a public statement.
  • Claims made on ransomware leak sites are not independent proof that an intrusion occurred or that any data was actually taken.
What should you do if you have an account with this company?
  • Change your password for any account associated with Kovo Healthtech Corp, and avoid reusing that password elsewhere.
  • Enable two-factor authentication (2FA) wherever it is offered, including on email accounts tied to the service.
  • Be alert for phishing emails, texts, or calls that reference Kovo Healthtech Corp or claim to be from the company, especially those urging urgent action.
  • Monitor bank and insurance statements for unfamiliar activity, particularly if the company handles sensitive health or payment information.
  • Consider signing up for an identity monitoring service like a service like Aura or LifeLock to get alerted if your personal information appears in places it shouldn’t.
  • Avoid clicking links in unsolicited messages and instead go directly to the company’s official website or app to check account status.

BreachLetter will update this page if Kovo Healthtech Corp confirms this incident, if new details emerge from the group’s claims, or if the matter is officially reported to regulators.

Leave a Comment