Ransomware victim disclosure
← All victimsLockers IT
Claimed by Nova · listed 6 hours ago
Status timeline
- ListedJun 21, 2026
- Data leakeddate unknown
At a glance
- Group
- Nova
- Status
- Data leaked
- Sector
- Technology
- Listed on leak site
- Jun 21, 2026
About the victim
AI dossier — public-source company profileLockers IT is a self-owned Bangladeshi IT company founded in 2013, headquartered in Chandpur. The company specializes in custom software development and operates with 11–50 employees.
- Industry
- Custom Software Development
- Address
- Chandpur, Bangladesh
- Employees
- 11-50
- Founded
- 2013
Attack summary
Severity: high — Confirmed exfiltration of data from multiple operational systems (ERP, CRM, e-commerce, cloud) with proof samples provided; dual-vector attack (encryption + data theft) affecting a software development company.The Nova group claims to have encrypted Lockers IT's systems and exfiltrated data from multiple servers. The group states it provided samples from the stolen data and offered decryption of one file as proof when contacted via their support department.
Data the group says was taken
AI dossier — extracted from the leak post- Server data (unspecified content)
- ERP system data
- Business management system data
- E-commerce platform data
- Cloud-hosted data
What the group claims
LockersIT is a self-owned Bangladeshi IT company founded in 2013, headquartered in Chandpur, that specializes in custom software development with a team of 11-50 employees - allcashdealer.com dealmart24.com dev1.lockersit.com erp.lockersit.com sales.lockersit.com brm.lockersit.com debnathashu.com dev2.lockersit.com eshop.lockersit.com cloud.debnathashu.com dev.allcashdealer.com dev3.lockersit.com lockersit.com cloud.lockersit.com dev.lockersit.com emailer.debnathashu.com project.debnathashu.com effected with the encryption, Data From the server has been taken, Nova Provide tree and samples from stolen data to the company with decrypt 1 file as sample when its get in touch with support department.
Sources
Source
Indexed 6 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

