Ransomware victim disclosure
← All victimsDesert Micro
Claimed by Nova · listed 5 hours ago
Status timeline
- ListedJun 19, 2026
- Data leakeddate unknown
At a glance
- Group
- Nova
- Status
- Data leaked
- Sector
- Technology
- Listed on leak site
- Jun 19, 2026
About the victim
AI dossier — public-source company profileDesert Micro is a software and internet services company based in Jacksonville, Florida, providing software solutions to waste management and storage companies. The company operates with 25–100 employees and serves clients in the sanitation and environmental services sector.
- Industry
- Software & Internet Services
- Address
- Jacksonville, Florida, United States
- Employees
- 25-100
Attack summary
Severity: high — Confirmed exfiltration of financial and payment card data at scale, affecting multiple downstream customer companies; exposure of PII and sensitive business records from clients in regulated sectors.The Nova group claims to have exfiltrated customer data from Desert Micro, including invoices, storage data, credit card details, payment and billing documents, and database backups from multiple client companies (Foothills Sanitation, Green Environmental, Inland Service, QC, FusionSite). The group states it has published proof samples.
Data the group says was taken
AI dossier — extracted from the leak post- customer invoices
- storage data
- credit card details
- payment and billing documents
- database backups
- client company records
What the group claims
DesertMicro.net is a Software & Internet based company located in Jacksonville, Florida, United States with over 25 - 100 employees, data included large sums of costumers data who use the company software service, such curbside waste company invoices and Storage data, foothillsSanitation + GreenEnviromnetal + InlandService + QC + FusionSite companies the same, credit cards Details and payments billings Documents, databases backups and more - Nova Provide tree and samples from stolen data to the company when its get in touch with support department.
Sources
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

