Ransomware victim disclosure
← All victimsAspire hospital
Claimed by nova · listed 24 hours ago
Status timeline
- Listed
Jun 5, 2026
- Data leaked
At a glance
- Group
- nova
- Status
- Data leaked
- Sector
- Healthcare
- Listed on leak site
- Jun 5, 2026
About the victim
AI dossier — public-source company profileAspire Hospital is a healthcare provider operating in Bhubaneswar, Odisha, India. The facility operates dual web properties (aspirehospitals.co.in and aspirehospitals.in) and provides hospital services to patients in the region.
- Industry
- Healthcare – Hospital Services
- Address
- Plot No: 163, 208, Ekamra Road, Unit-6, Ganga Nagar, Bhubaneswar, Odisha 751001, India
Attack summary
Severity: critical — Confirmed exfiltration of patient medical records (regulated PII at scale) from a healthcare provider, with proof samples published and data publicly disclosed. Healthcare data breaches are subject to strict regulatory requirements and pose direct risk to patient privacy and safety.Nova ransomware group claims to have encrypted servers and exfiltrated patient data from Aspire Hospital. The group has published proof samples and offers decryption of 2 files as part of extortion negotiation.
Data the group says was taken
AI dossier — extracted from the leak post- patient records
- personal health information
- hospital administrative data
The group's post references roughly 2 proof files.
What the group claims
Both aspirehospitals.co.in and aspirehospitals.in Under Nova Company Control, servers encrypted and patients data stolen, A Healthcare provider based on Plot No: 163, 208, Ekamra Road, Unit-6, Ganga Nagar, Bhubaneswar, India, Odisha, you need to think well to contact us for recover and to secure patients records - Nova Provide tree and samples from stolen data, free 2 files decrypt to the company when its get in touch with support department.
Sources
Source
Indexed 24 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
