Ransomware victim disclosure
← All victimsFMZ Tecnologia em Sistemas
Claimed by Nova · listed 11 days ago
Status timeline
- ListedJul 18, 2026
- Data leakeddate unknown
At a glance
- Group
- Nova
- Status
- Data leaked
- Country
- Brazil
- Sector
- Technology
- Listed on leak site
- Jul 18, 2026
About the victim
AI dossier — public-source company profileFMZ Tecnologia em Sistemas is a Brazilian software company with over 15 years of experience based in São Paulo. They develop HORUS, an ERP system tailored for the book industry, managing inventory, sales, royalties, and consignment operations for publishers, bookstores, and distributors.
- Industry
- Software & ERP Systems
- Address
- São Paulo, Brazil
Attack summary
Severity: medium — Data has been published by the ransomware group (disclosed_status: data_published), indicating exfiltration occurred. However, the post excerpt provides no inventory of specific data types, no proof file count, and no details on data sensitivity. The company manages business-critical ERP data but no regulated datasets (PII at scale, financial records, etc.) are explicitly mentioned.The Nova group claims to have compromised FMZ Tecnologia em Sistemas. The specific nature of the attack (encryption, exfiltration, or both) and the scope of data accessed are not detailed in the available post excerpt.
What the group claims
FMZ Tecnologia em Sistemas is a Brazilian software company that develops solutions for the book industry. Its main product, HORUS, is an ERP system designed for publishers, bookstores, and distributors. The system helps manage inventory, sales, royalties, and consignment operations. The company has over 15 years of experience and is based in São Paulo, Brazil.
Sources
Source
Indexed 11 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

