Finished Luxshare: Ransomware group claims to have stolen Apple data

Besides Foxconn, Luxshare Precision has become one of the most important producers of Apple hardware. A data leak is said to have occurred there.

listen Print view
A building of Luxshare ICT

A building of Luxshare ICT.

(Image: Michael Vi / Shutterstock.com)

3 min. read

A security incident is said to have occurred at a Chinese manufacturing conglomerate that is important for Western companies. The company Luxshare Precision Industry Co. Ltd., also known as Luxshare-ICT, is said to have fallen victim to a ransomware incident, according to an announcement by cybercriminals. Not only Apple, but also Nvidia, Meta, and Qualcomm, which partially use Luxshare for their manufacturing, are reportedly affected. This is reported by, among others, Hackread.

The group that carried out the attack is said to be a Ransomware-as-a-Service organization that is well-known in the scene. It is said to have already attacked hotel giant Hyatt and burger chain McDonald's, among others. The claims, along with a leak excerpt, were published via the Darkweb. Stolen materials allegedly include 3D CAD product models, 2D component drawings, design documentation, PCB information, and more. Contact people within Luxshare are also listed. Apple products such as iPhones, Apple Watch, or Apple TV are mentioned in the excerpts published by the ransomware attackers, but in the context of a repair project.

Luxshare has meanwhile become one of the most important manufacturers for Apple in China and other regions, such as Vietnam. After Foxconn, more and more iPhones are produced here, as well as accessory products and very complex hardware such as the Vision Pro. Luxshare initially did not react to the attack, the attackers claim on their leak site. "We have waited a long time for your response, but it seems your IT department has decided to cover up the incident in your company. We strongly recommend that you contact us to prevent your confidential data and project documents from becoming public," they write.

Videos by heise

The information leaked so far as a sample is apparently not yet very spectacular. However, it is data that apparently reaches back quite far in some cases - the aforementioned repair project with Apple is said to have run from 2019 to 2025. Whether data on still unknown products are among the leaked materials has not been confirmed.

Neither Apple nor Luxshare have commented on the ransomware claim so far. The leaks, if genuine, are likely to be of interest not only to Apple observers, but also to competitors and the accessories industry. They need information about new products to be able to produce suitable peripherals early on. In addition, companies could also use the information to produce fake Apple hardware.

Empfohlener redaktioneller Inhalt

Mit Ihrer Zustimmung wird hier ein externer Preisvergleich (heise Preisvergleich) geladen.

Ich bin damit einverstanden, dass mir externe Inhalte angezeigt werden. Damit können personenbezogene Daten an Drittplattformen (heise Preisvergleich) übermittelt werden. Mehr dazu in unserer Datenschutzerklärung.

(bsc)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.