Apple supplier Quanta confirms ransomware attack

cybercriminal
(Image credit: Pixabay)

Cybercriminals have published the design for Apple's upcoming MacBook Pro refresh online following a successful ransomware attack on one of the company's biggest suppliers.

Quanta Computer is a Taiwan-based ODM laptop manufacturer that recently confirmed it servers had suffered a cyberattack. In a statement to Bloomberg, a company spokesperson acknowledged the attack, saying:

“Quanta Computer’s information security team has worked with external IT experts in response to cyber attacks on a small number of Quanta servers. We’ve reported to and kept seamless communications with the relevant law enforcement and data protection authorities concerning recent abnormal activities observed. There’s no material impact on the company’s business operation.”

While Quanta did not go into details regarding the attack itself as an investigation is still underway, the ransomware gang REvil has taken responsibility and is in the process of “negotiating the sale” of data stolen in the attack “with several major brands”, according to The Register.

Quanta ransomware attack

The REvil ransomware group has shared additional details on its “Happy Blog” which it uses to name and shame its victims. In a post on its blog, the group claimed that it deployed ransomware on Quanta's servers and was able to obtain confidential blueprints for upcoming Apple products.

So far REvil has published some of the blueprints it has acquired including one for an unreleased MacBook dated March 2021 and as the company's last business laptop was released in November of last year, the design could be for an upcoming device. 

The ransomware group has demanded that Quanta pay it 123,028 Monero ($50m) to delete the files it has stolen and decrypt the company's locked systems. This is because cybercriminals have begun to move away from demanding their ransoms in Bitcoin in favor of Monero as it is much harder to track.

Earlier this year REvil deployed ransomware on another Taiwanese hardware maker's networks when it hacked Acer. At the time, the group also asked for $50m in cryptocurrency to decrypt Acer's files with the threat that it would increase the ransom to $100m if the company refused to agree to its terms.

While REvil has acquired Apple's blueprints and confidential data, it is still unclear as to whether or not it also obtained documents for Quanta's other clients which include HP, Facebook and Google among others.

Via The Register

TOPICS
Anthony Spadafora

After working with the TechRadar Pro team for the last several years, Anthony is now the security and networking editor at Tom’s Guide where he covers everything from data breaches and ransomware gangs to the best way to cover your whole home or business with Wi-Fi. When not writing, you can find him tinkering with PCs and game consoles, managing cables and upgrading his smart home. 

Read more
Code Skull
Top component maker Unimicron hit by massive ransomware attack
A person in a wheelchair working at a computer.
Why betting on Mac security could put your organization at risk
A laptop with a red screen with a white skull on it with the message: "RANSOMWARE. All your files are encrypted."
Major ransomware attack sees Tata Technologies hit - 1.4TB dataset with over 730,000 files allegedly stolen
Red padlock open on electric circuits network dark red background
Newspaper printing across US hit after Lee Enterprises says “cybersecurity event” disrupted operations
A group of 7 hackers, 6 slightly blurred in the background and one in the foreground, all wearing black with hoods pulled up over their heads. You cannot see their faces. The hacker in the foreground sits with an open laptop in front of them. The background, behind the hackers, is a Chinese flag
China government-linked hackers caught running a seriously dangerous ransomware scam
Ransomware
Lee Enterprises blames cyberattack for encrypting critical systems as US newspaper outages drag on
Latest in Security
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Representational image depecting cybersecurity protection
Cisco smart licensing system sees critical security flaws exploited
Latest in News
Apple iPhone 16 Review
The latest iPhone 18 leak hints at a major chipset upgrade for all four models
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 23 (game #385)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 23 (game #651)
Google Pixel 9 Pro Fold main display opened
Apple is rumored to be prioritizing battery life on the foldable iPhone – which could also feature a liquid metal hinge for added durability
Google Pixel 9
The Google Pixel 10 just showed up in Android code – and may come with a useful speed boost