Ransomware victim disclosure
← All victimsDivine IT
Claimed by Nova · listed 10 hours ago
Status timeline
- ListedJun 15, 2026
- Data leakeddate unknown
At a glance
- Group
- Nova
- Status
- Data leaked
- Country
- Bangladesh
- Sector
- Technology
- Listed on leak site
- Jun 15, 2026
About the victim
AI dossier — public-source company profileDivine IT Limited is a CMMI Level 3 IT consultancy and software development company established in 2005, based in Bangladesh with offices in Dhaka, London, Montreal, and California. The company specializes in enterprise resource planning (ERP) systems, security solutions, and custom software applications for enterprises and government organizations across multiple industries.
- Industry
- IT Consultancy & Software Development
- Address
- Dhaka, London, Montreal, California
- Founded
- 2005
Attack summary
Severity: medium — Confirmed data exfiltration from a software/IT services company with access to enterprise systems and government clients' data. No specific regulated data categories confirmed in public statements, but the nature of their business (ERP, government solutions) suggests potential sensitivity. No proof file count or specific data inventory disclosed.Nova ransomware group claims to have exfiltrated data from Divine IT, offering sample files as proof to demonstrate access to the company's internal systems and customer data.
Data the group says was taken
AI dossier — extracted from the leak post- Internal business data
- Customer information
- System configurations
What the group claims
Divine IT Limited is a CMMI Level 3 IT consultancy and software development company based in Bangladesh, established in 2005. The company specializes in creating ERP systems, security solutions, and various software applications for diverse industries. Their primary clients include enterprises and government organizations seeking robust IT solutions and support. With a commitment to excellence, Divine IT has received multiple awards for its innovative products, including the flagship PrismERP - Nova Provide tree and samples from stolen data to the company when its get in touch with support department.
Sources
Source
Indexed 10 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

