Menu
Browse

Cyber Incident Victim: Tata Electronics

Date

Jun 2026

Location

India

Status

Unknown

Updated

2026-07-15 00:48

Timeline
Occurred
Jun 2026
Discovered
Pending
Disclosed
Pending
Resolved
Pending
Summary

Tata Electronics was targeted by the ransomware group World Leaks, which exfiltrated over 630 gigabytes of data and released more than 200,000 files on the dark web. The leaked material included confidential Apple documents detailing iPhone 18 Pro components, supplier lists, component specifications, and images of the device during testing, as well as Tesla engineering drawings related to Project Highland and Model Y components. Employee passport copies, emails, event logs and internal system logs were also among the exposed files. The company confirmed a cybersecurity incident, activated emergency response procedures, restricted internal access and engaged a forensic consultant, while Apple and Tesla began investigations into the breach. The incident highlighted supply‑chain cybersecurity risks for both companies.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actor Type Location
1 actor Available to members Available to members

Description

In early June 2026, Tata Electronics detected a cybersecurity incident on some of its internal systems and immediately activated its emergency response procedures. The company reported that it restricted internal access to sensitive systems and engaged a global consultant to conduct a forensic audit, while stating that manufacturing and business operations continued without disruption. On June 10, 2026, the ransomware group World Leaks posted more than 200,000 files totalling over 630 gigabytes on the dark web, claiming to have stolen the data from Tata Electronics. World Leaks publicly claimed responsibility for the breach on its leak site on June 12, 2026, and made the files available for download.

Cyber Incident Image

The leaked dataset included detailed information on Apple’s iPhone 18 Pro, such as chip layouts on the main circuit board, battery and camera component specifications, supplier lists, and photographs of the device during drop tests. It also contained emails, event logs spanning several years, employee passport copies, and internal system logs, as well as proprietary Apple documents marked with watermarks and codenames. In addition, the leak featured Tesla‑related material, including engineering drawings for Project Highland, manufacturing assembly documents dated May 2025, and references to components used in SUVs such as the Model Y. Tata Electronics confirmed that the stolen data also comprised 33 files and folders linked to its Hosur iPhone assembly plant in Tamil Nadu, along with a 52‑page document outlining Apple’s quality inspection standards for iPhone circuit boards. Although Tata stated that the incident had no impact on its operations, the breach raised concerns about the exposure of Apple’s supply chain secrets and potential reputational harm to both Tata and Apple. Apple confirmed it was investigating the leak and working with Tata on long‑term security measures, while declining to comment on any ransom demand, and Tata likewise refused to discuss the ransom demand. The Indian Computer Emergency Response Team did not provide a public comment on the incident, and previous cyberattacks on other Tata Group entities, such as the Jaguar Land Rover breach that caused a six‑week output halt, were noted as contextual background.

Sources
Sources available to members
5 sources