Ransomware victim disclosure
← All victimsCYMA
Claimed by nova · listed 4 months ago
Status timeline
- Listed
Jan 22, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileCYMA is listed as a victim in this ransomware disclosure; however, the leak post content describes numerous unrelated companies and does not contain any specific information about CYMA's operations, location, or industry. No public site content was available to supplement identification.
Attack summary
Severity: medium — Data is marked as published (disclosed status: data_published), indicating exfiltration and leak occurred, but no details about the volume, type, or sensitivity of the data are provided, preventing a higher severity classification.The Nova ransomware group claims to have published data belonging to CYMA after the company did not engage with ransom demands. The specific nature of the data exfiltrated or encrypted is not described in the available post content.
What the group claims
CYMA Systems has been producing payroll and accounting software solutions since 1980. CYMA's most recent accounting and payroll software suite is CYMA Accounting for Windows which offers solutions for mid-sized business with 200+ employees, PEOs, ASOs, Payroll Services, Directed Services (Fiscal / Employer Agents) Franchises, Staffing, and Nonprofit Organizations.
The leak post
captured from the group's siteDesysweb is a comprehensive technology solutions integrator specializing in telecommunications and IT services, including managed services and a Security Operation Center. With over 200 clients and more than 13 years of experience, they offer personalized consulting, high-quality materials, and competitive pricing. The company is ISO 27001:2022 certified, ensuring robust information security and data protection. Desysweb operates nationally with a presence in eight provinces and is committed to delivering tailored projects and 24/7 customer support through a team of certified engineers. - Los sistemas de la empresa están encriptados con más de 60 mil archivos en múltiples servidores. Tienes tiempo de contactarte con nuestro departamento a través de los canales indicados en el archivo de recuperación que está dentro de los sistemas encriptados. Una vez que termine la cuenta regresiva, ya no será posible recuperar la información y tus datos se perderán. Estamos listos para desencriptar cada uno de los archivos. Contáctanos cuanto antes. Since the company didn't reach us, Data has been Leaked. Since the company didn't reach us, Data has been Leaked. CHARLES CONSEIL COORDINATION (3CCC)…
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
