A ransomware.live listing attributed to the Akira ransomware group identified Cozad Asset Management as a victim on August 14, 2026. The listing claimed that the group planned to publish 13 GB of corporate data, but Cozad Asset Management had not publicly confirmed the incident in the sources reviewed.
The listing claimed the data may include employee passport information, driver's license information, Social Security numbers, financial information, confidential files, and contracts. No entity-level affected-person count, specific affected states, regulator notification, or consumer notification date was disclosed. The available information may change if Cozad Asset Management or a government agency issues an official breach notice.