Search TorNews

Find cybersecurity news, guides, and research articles

Popular searches:

Home » News » Data Breaches » India’s Tata Electronics Confirms Data Breach After World Leaks Ransomware Leak

India’s Tata Electronics Confirms Data Breach After World Leaks Ransomware Leak

By:
Last updated:June 23, 2026
Human Written
  • After ransomware group World Leaks dumped over 200,000 individual files (totaling 630GB) onto the dark web, Tata Electronics confirmed that they have experienced a data breach as a result.

  • The leaked data includes Apple iPhone circuit board inspection standards, Tesla Model 3 and Model Y design documents, internal emails, event logs, and employee passport copies.

  • Apple is investigating the breach, and Tata has reportedly received a ransom demand, though the company said its business operations remain unaffected.

Tata Electronics Confirms Data Breach After World Leaks Ransomware Leak

India’s tech giant, Tata Electronics, has verified that they suffered a cyber-attack when a ransomware organization released over 200,000 documents onto the dark web. The leaked data allegedly contains sensitive component designs and specification papers belonging to Apple and Tesla, two of the Indian manufacturer’s biggest clients.

The breach occurred a few weeks ago, and Tata has stated that it commenced responding to the breach immediately after its discovery. The company also stated that this breach of security has not created any disruptions with respect to its normal business operations.

The ransomware group responsible for the breach, World Leaks, has publicly claimed its responsibility for the attack, and has made similar claims in relation to a past breach at Nike, the sportswear giant firm.

What the Stolen Data Contains

The stolen data amounts to over 630 GB and consists of more than 200,000 individual files – it reportedly contains a mix of trade secrets, internal communications, and employee personal information.

Apple-related files and folders on the dark web site carry labels like ‘com.apple.factorydata’ and ‘material specification.’ Among the files is a 52-page document that seems to spell out quality checks for iPhone circuit board parts. Also among the leaked materials are 33 folders connected to Hosur, where Tata operates its primary iPhone assembly facility in Tamil Nadu.

Tesla-related documents also appear in the leak. One folder labeled ‘NV36 Chargeport Controller – North America’ reportedly refers to parts for an upgraded version of Tesla’s Model Y. Another document marked ‘TRADE SECRET’ contains drawings for Tesla’s Project Highland, the internal codename for its revamped Model 3 sedan.

Beyond the technical documents, researchers found internal emails, event logs spanning several years, and passport copies of employees, including foreign nationals. Some published files carried clear copyright footers stating they contain confidential and proprietary information belonging to Apple Inc. or are trade secrets of Tesla Inc.

Ransomware Group Targets Global Manufacturers

World Leaks operates entirely on the dark web, beyond the reach of conventional search engines. The group has been around for an extended period and primarily targets large globally recognized manufacturers with a strong profit motive.

The strategy mirrors that of other ransomware groups targeting the electronics manufacturing sector. Foxconn, a major Apple supplier, also confirmed a cyberattack after a ransomware gang claimed to have stolen massive amounts of corporate data.

According to one cybersecurity researcher, World Leaks’ data appeared in public view since at least June 10. The Indian cybersecurity agency known as CERT-In has not issued any statement with respect to this incident. No independent audit firms have verified the validity of the released documents.

Also, WorldLeaks claimed to have stolen 1.4TB of internal data from Nike in January 2026. The group released over 188,000 files allegedly containing product designs, supply chain documents, and internal business records. Nike confirmed it was investigating a potential cybersecurity incident but did not verify the breach’s validity.

WorldLeaks operates as a data extortion group, abandoning traditional ransomware encryption in favor of purely theft-based attacks.

Apple Investigates as Ransom Demand Surfaces

According to a person with knowledge of the situation, Apple has launched an investigation and is carrying out a detailed review. The same source mentioned that a ransom demand was made to Tata Electronics, but the company chose not to respond publicly about it.

Tata represents roughly a third of Apple’s total iPhone production in India, while Foxconn accounts for the other portion. Tata entered iPhone production three years ago when it purchased Wistron’s operations in India and later purchased a 60 percent stake in Pegatron’s subsidiary in India. It also signed a semiconductor supply agreement with Tesla the following year.

This data breach is the most recent challenge for Apple’s supply chain in India, where Tata is already facing an investigation for alleged contamination of farmland located near one of its iPhone component manufacturing facilities. Last year, Tata’s UK-based Jaguar Land Rover division suffered a ransomware attack that resulted in a cessation of production for six weeks.

Tata Electronics has not specified what types of data were accessed or how many people or companies were affected. The authenticity of the leaked documents remains unverified.

Share this article

About the Author

Joahn G

Joahn G

Cyber Threat Journalist

Joahn is a cyber threat journalist dedicated to tracking the evolving landscape of digital risks. His reporting focuses on ransomware gangs, data breach incidents, and state-sponsored cyber operations. By analyzing threat actor motives and tactics, he provides timely intelligence that helps readers understand and anticipate the security challenges of tomorrow.

View all posts by Joahn G >
Comments (0)

No comments.