RANSOMWARE VICTIMHEALTHCAREDUPLICATE CLAIM

Atenção Primária à Saúde Brazil

nova📍 Brazil (BR)📅 December 4, 2025
8
same group

Attack Intelligence

Atenção Primária à Saúde Brazil was compromised in a ransomware attack attributed to nova in December 2025. The organization, operating in the Healthcare sector in Brazil, was added to the group's data leak site as part of an extortion campaign.

nova operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Atenção Primária à Saúde is system provided by Ministério da Saúde of brazil, we have exf all sql files (100GB of SQL files) from them systems and clouds, millions of patients records, 50M> records lines, samples will be provided to company when its contact, the goal system https://esusbelacruz.fixtecnologia.com.br/

Additional Details

Other Victims — nova (8)

Quick Facts

CountryBrazil (BR)
SectorHealthcare
Attack DateDec 4, 2025
Intel Sourceransomlook
StatusDUPLICATE CLAIM

Threat Group

nova
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.