Tata Electronics Breach: 630 GB of Apple and Tesla Trade Secrets Leaked by World Leaks

How extortion group World Leaks breached Tata Electronics and leaked 630 GB of proprietary Apple and Tesla engineering assets.

Tata Electronics Breach: 630 GB of Apple and Tesla Trade Secrets Leaked by World Leaks

This post is part of the Week of June 26, 2026 Security Roundup.

Overview

Tata Electronics — an Indian electronics and semiconductor manufacturer and a key Tier-1 supplier to Apple and Tesla — confirmed a major cybersecurity incident on June 22, 2026, weeks after more than 630 GB of data (204,300+ files) surfaced on a hacker forum posted by the ransomware extortion group World Leaks. A sample review by TechCrunch confirmed Apple supplier specifications and Tesla manufacturing documents, including proprietary design files labeled TRADE SECRET.

What Was Stolen

The 630 GB archive contains: Apple component supplier specifications; Tesla manufacturing documents including parts specifications for an upgraded Model Y chargeport controller labeled "NV36 Chargeport Controller – North America"; internal Tesla Project Highland (Model 3 revamp) drawings marked "TRADE SECRET" (2023); employee passport copies including foreign nationals; internal emails and event logs spanning several years; and organizational structure and pricing documents.

Apple confirmed it is investigating the incident and a ransom demand was made to Tata Electronics. Tesla had not publicly commented as of publication.

Initial Access and Attack Chain

The attackers are assessed to have gained initial access via social engineering or phishing targeting Tata Electronics India-based employees, based on the breadth and variety of the leaked data (employee passports, internal emails, event logs, plus supply-chain-sensitive technical documents). The presence of multi-year event logs and passport scans suggests a dwell period of weeks to months before exfiltration. The use of the World Leaks platform — a ransomware-as-extortion service — indicates affiliation with a financially motivated ransomware operator rather than a nation-state actor.

No CVE or specific vulnerability has been publicly attributed to the initial access vector as of this writing. Tata Electronics declined to disclose the nature of the compromise, the number of affected individuals or organizations, or whether Apple and Tesla were notified prior to the data appearing online.

Supply Chain Risk Implications

This incident illustrates the systemic exposure created by hardware supply-chain integration. Tier-1 suppliers to major OEMs hold extraordinarily sensitive design and manufacturing data. Key risks surfaced by this breach:

  • Intellectual property theft at the component design level (before products reach market)
  • Trade secret exposure enabling competitive intelligence for rival manufacturers
  • OEM brand damage without OEM-controlled incident response
  • Extortion leverage against the OEM (Apple, Tesla) via the supplier relationship

Remediation and Recommendations

  • Organizations that are Apple or Tesla suppliers: treat this incident as a supply chain compromise notification — assume any shared design data with Tata Electronics over the past several years may be compromised.
  • Conduct a data classification audit for sensitive IP stored with third-party manufacturers and logistics partners.
  • Enforce zero-trust supplier access: suppliers should receive only the specific design data they require for their scope, via controlled portals, not broad file share access.
  • OEMs should include ransomware response clauses in supplier contracts requiring notification SLAs and incident response cooperation.
  • Monitor dark web forums (World Leaks, BreachForums, etc.) for organizational data via automated threat intelligence feeds.

← Back to the Security Roundup: Week of June 26, 2026

Read more

Brecha de Datos Médicos en Photon Health

Filtración en Photon Health: Zero-Day de Inyección SQL en Metabase Expone Recetas Médicas de Pacientes

📌Security Roundup Series: Semana del 9 de Octubre de 2026 • 4 min read deep dive🏛️Incident Overview: Target / Organization: Photon Health, Inc. (Plataforma de Prescripción Médica Digital) Threat Actor / Attribution: Actor Desconocido (Extorsión Financiera) Impact / Records Compromised: Nombres de pacientes, direcciones, números de teléfono, fechas de nacimiento, recetas médicas completas

By James Luther