Kovo Healthtech, a Vancouver software company that sells AI process automation to healthcare organizations, became Pear’s latest healthcare-sector target when the gang posted its name on September 4. Trackers say the group claims it reached the firm’s systems two days earlier, and the listing carries no victim count and names no data categories. Kovo has not confirmed any intrusion.
The company, whose website describes its KovoPlus platform as AI process automation for healthcare innovation, has not posted a breach notice or filed with any regulator as of September 5. Pear’s listing quotes the firm’s own marketing language almost verbatim and includes no sample files, which trackers say is consistent with a claim assembled from public sources.
The Pear group has claimed multiple US healthcare targets this summer, including Texas urgent care operator Next Level Medical in late August, and several of its postings never advanced past the extortion stage. Kovo’s patient-facing software means the unverified claim still matters to the care organizations that run its systems, since a later data dump would ripple through their patient records.
Ransomware trackers flag the posting as an unverified claim rather than a confirmed breach and caution that it could develop into a data release if no payment is made. Providers using Kovo software should watch for direct communications from the company in the coming weeks.