Indian electronics manufacturing giant Tata Electronics confirmed a significant cybersecurity incident after the World Leaks ransomware group published over 200,000 files totaling more than 630 gigabytes on the dark web, containing proprietary and confidential documents belonging to Apple and Tesla.
The breach represents one of the most consequential supply chain security incidents affecting Apple in recent years, exposing detailed component designs, schematics, and manufacturing specifications for Apple products including the unreleased iPhone 18 series.
What Was Exposed
The leaked data reportedly includes:
- Proprietary component designs and specifications for Apple iPhones
- Manufacturing process documentation
- Bill of materials data
- Employee passport scans and internal communications
- Facility layout and security information
The Indian government has officially confirmed it is investigating the incident.
Supply Chain Security Implications
Apple’s manufacturing supply chain has long been a target for both cybercriminals and nation-state actors. The Tata breach demonstrates that even major, well-established manufacturing partners can be vulnerable to ransomware attacks that result in the exfiltration of sensitive intellectual property.
The World Leaks group, a relatively new ransomware operation, claimed responsibility for the attack. The group is known for combining data exfiltration with file encryption and operating a leak site to pressure victims into paying ransoms.
This breach follows a pattern of increasing attacks on electronics manufacturing supply chains. Foxconn, another major Apple supplier, was hit by a ransomware attack in May 2026 that disrupted North American factories and resulted in the theft of 8 terabytes of data.
What It Means for Apple Users
While the breach does not directly expose end-user data, the theft of detailed hardware specifications and component designs could have long-term implications. Leaked schematics can be studied by attackers looking for hardware-level vulnerabilities, and counterfeiters may use the documentation to produce lookalike components.
Apple has not issued a public statement about the breach at the time of writing.