Panzer lists K3G Solutions Brazil
Panzer claimed K3G Solutions Brazil in Manaus and tied it to a possible 300 GB exfiltration, according to ransomware records.
Panzer listed K3G Solutions, a Brazilian telecom and IT consultancy based in Manaus, on its leak site. Ransomware.live records estimate 300 GB exfiltrated, and Dexpose.io said the group threatened to publish the full leak if the company did not make contact.
Panzer has listed K3G Solutions Brazil, a Brazilian telecom and IT consultancy based in Manaus, as a victim on its leak site. Independent ransomware.live records place the discovery and attack date at an estimated Sept. 18, 2026, and estimate 300 GB of data exfiltrated.
What is known about the case?
Available information points to an extortion-driven breach and possible data theft, not just file encryption. Dexpose.io said that on Sept. 18, 2026, Panzer claimed the attack against K3G Solutions Brazil and threatened to publish the full leak if the company did not get in touch.
ransomware.live adds that the incident may include references to compromised employees, affected users and third-party credentials. The same profile classifies the victim’s sector under categories that include Energy & Utilities, which broadens the case’s relevance for readers tracking infrastructure and supply chain risk in Brazil.
Why is Panzer on Brazil’s telecom radar?
ZeroHour’s actor profile describes Panzer as a ransomware-as-a-service operation with encryptors for Windows, Linux, FreeBSD and VMware ESXi. It also says the group recruits affiliates via Tox and uses an 80/20 revenue split.
Cyware, in its daily briefing on Sept. 18, 2026, described Panzer as an active campaign targeting Windows, Linux, FreeBSD and VMware ESXi environments, with an emphasis on manufacturing and telecom. The same material said the group’s campaigns contributed to 997 global ransomware attacks in August 2026.
Aggregated coverage also shows K3G Solutions Brazil listed in Breach House as a victim attributed to Panzer in Brazil, with leak status pending. HookPhish and other bulletins echoed the alert the next day, with Brazil linked to the incident and no additional metrics provided.
What profile does K3G Solutions have?
Pulse - Kalir.io coverage identifies K3G Solutions as a Brazilian telecom and IT consultancy that offers network engineering, ISP support, monitoring, call center, CDN and colocation services. That context helps explain why an actor like Panzer, which has previously hit manufacturers and telecom firms in Italy according to ZeroHour, may have focused on the company.
No public confirmation of the full leak or company statement appears in the available material. What is documented is the extortion pressure, the Sept. 18, 2026 timeline and the estimated 300 GB exfiltration tied to the case.
Sources
- Panzer (Threat actor): news timeline & CVEszerohour.day· ZeroHour
- All Records - Breach House (entry for K3G Solutions Brazil)breach.house· Breach House
- Victim: K3G Solutions Brazilransomware.live· ransomware.live
- Ransomware Group Panzer Hits: Honda (Peru) – with K3G Solutions Brazil alert sectionhookphish.com· HookPhish
- LockBit5 ransomware lists Taiwanese firm tpi.tw - Pulse - Kalir.iopulse.kalir.io· Pulse - Kalir.io
- Panzer Ransomware Strikes K3G Solutions Brazildexpose.io· Dexpose.io
- Cyware Daily Threat Intelligence – September 18, 2026 (Panzer ransomware overview)cyware.com· Cyware



