On December 20, 2024, business consulting firm Divimast appeared on the leak site of the Akira ransomware group. The listing states that attackers exfiltrated roughly 8 GB of internal corporate documents during a ransomware incident and threatens to publish them unless the company meets undisclosed demands. The notification does not specify how many employees or customers are affected.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Divimast
Get alerted the next time Divimast files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Divimast’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Details in the Akira Listing
The primary disclosure on the Akira leak site, archived via ransomware.live, states that Divimast suffered a ransomware attack in which internal files were stolen prior to encryption. The actors list sample categories including confidential agreements, internal financial documents, employee passports (identity cards), HR documents, and contact numbers and email addresses belonging to both employees and customers. No exact victim count is provided, and the full archive has not yet been published as of the listing date.
The disclosure indicates the data was taken from Divimast’s corporate network. Divimast provides specialized consulting services drawing on consultants with more than 20 years of experience. Such firms routinely hold sensitive client contracts and personal identifiers, which matches the file types described in the leak post.
Why This Matters for You and Your Family
When a company like Divimast loses control of employee passports, HR records, and customer contact lists, the information can appear in criminal marketplaces within days. If you or any member of your family worked with Divimast as an employee, contractor, or client, your full name, email, phone number, and potentially scanned identity documents are now at risk. Employee passports and identity cards are especially dangerous because they contain government-issued numbers and photographs that cannot be changed.