Ransomware hackers claim breach at Foxconn, a major electronics manufacturer for Apple, Google, and Nvidia

TL;DR

The Nitrogen ransomware group claims to have breached Foxconn, stealing over 11 million files. Foxconn confirmed the attack impacted North American facilities and is resuming normal operations. The hackers threaten to leak stolen data if demands are not met.

Ransomware hackers known as Nitrogen claim to have breached Foxconn, a major electronics manufacturer, stealing over 11 million files and threatening to leak confidential data. Foxconn confirmed the attack impacted facilities in North America and stated that affected factories are currently resuming normal production. This development raises concerns about supply chain security and data protection for major tech companies.

Foxconn, the electronics manufacturing giant that produces components and devices for Apple, Google, Nvidia, Sony, and others, announced on May 13, 2026, that it was targeted by a cyberattack. The company stated that the attack affected facilities in North America, but did not specify the extent of operational disruptions. Foxconn emphasized that the impacted factories are currently returning to normal operations.

The ransomware group Nitrogen claimed responsibility via its dark web leak site, where it often publicizes victims to pressure payment. The hackers assert they stole over 11 million files, including sensitive information from Foxconn’s clients such as Apple, Dell, Google, Intel, and Nvidia. The group published several images purportedly showing product schematics, guidelines, and bank statements as proof of their breach.

Why It Matters

This incident underscores ongoing vulnerabilities in global supply chains and the risks posed by ransomware groups targeting major manufacturing firms. The theft of proprietary data from companies like Apple and Google could have broader implications for product security and corporate confidentiality. The threat of data leaks also highlights the increasing sophistication of cybercriminal tactics and the potential for widespread disruption if negotiations or law enforcement actions do not resolve the situation.

Data Recovery Stick | USB Data Recovery Device | Windows Data Recovery Software | Recover SD Card, Photos, Files

Data Recovery Stick | USB Data Recovery Device | Windows Data Recovery Software | Recover SD Card, Photos, Files

  • Easy to Use: Plug and recover files automatically
  • Wide Compatibility: Supports Windows Vista to 11
  • Supports Multiple File Types: Photos, documents, music, PDFs, and more

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Background

Foxconn has been a key player in the global electronics industry for decades, with a reputation for manufacturing products for leading tech firms. Cyberattacks targeting supply chain companies have become more frequent, with recent incidents exposing vulnerabilities in data security practices. Nitrogen, a known double-extortion ransomware group, has previously targeted other high-profile organizations, making this breach a notable escalation in cybercriminal activity against critical infrastructure.

“Foxconn is actively investigating the cyberattack and is working with cybersecurity experts to assess the impact. We are committed to protecting our data and operations.”

— Foxconn

“We have stolen over 11 million files, including confidential information from Foxconn’s clients. If our demands are not met, we will leak the data.”

— Nitrogen ransomware group

SQL for Cyber Threat Hunting: Playbooks for Detection, Investigation, and Incident Response (Cybersecurity Coding Mastery Series: High-Performance ... Tools, Automation, and Detection Engineering)

SQL for Cyber Threat Hunting: Playbooks for Detection, Investigation, and Incident Response (Cybersecurity Coding Mastery Series: High-Performance … Tools, Automation, and Detection Engineering)

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

What Remains Unclear

It is not yet clear how much operational disruption the attack has caused beyond the affected facilities resuming normal production. Foxconn has not disclosed whether any ransom was paid or if negotiations are ongoing. The full scope of stolen data and the potential impact on clients remains uncertain, and ongoing investigations are expected to clarify these issues.

ENGPOW File Box with Lock,Fireproof Document Box with Zipper&Pockets,Collapsible File Organizer Filing Storage Cabinet with Handle,Portable Home Office Safe for Hanging Letter/Legal Folder,Black
  • Fireproof and Water-Resistant: Withstands up to 2000℉, water-resistant
  • Anti-static and Reflective Strip: Prevents dust, easy to locate at night
  • Portable and Secure: Includes combination lock and adjustable handle

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

What’s Next

Foxconn is likely to continue investigating the breach, implement additional security measures, and coordinate with law enforcement. The hackers may release more stolen data or issue further threats. Industry analysts will monitor for any signs of product or data leaks that could affect major clients or supply chains.

Applied Network Security Monitoring: Collection, Detection, and Analysis

Applied Network Security Monitoring: Collection, Detection, and Analysis

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Key Questions

Has Foxconn paid the ransom?

It is not yet known whether Foxconn has paid any ransom or is negotiating with the hackers.

What data was stolen in the breach?

The hackers claim to have stolen over 11 million files, including confidential information, product schematics, guidelines, and bank statements from Foxconn and its clients.

Will this affect product supply or operations?

Foxconn stated that affected factories are resuming normal production, but the full operational impact remains unclear as investigations continue.

What are the potential consequences for clients like Apple and Google?

If proprietary or sensitive data is leaked, it could lead to security vulnerabilities, intellectual property risks, and reputational damage for the affected companies.

You May Also Like

Smart Contract Bugs: Inside the Exploits That Drained DeFi Protocols

What vulnerabilities in smart contracts allow exploits to drain DeFi protocols, and how can understanding these risks protect your assets?

GitHub confirms breach of 3,800 repos via malicious VSCode extension

GitHub has confirmed that approximately 3,800 internal repositories were accessed after a malicious VS Code extension was installed by an employee. The company has contained the breach.

Why You Need a Dead Man Switch for Your Crypto Holdings

Why you need a dead man switch for your crypto holdings is crucial to ensure seamless transfer and protection if you’re unable to act.

The Bottleneck Moved: Inside Anthropic’s Expansion of Project Glasswing

Anthropic is extending its cybersecurity initiative to over 150 organizations, shifting focus from finding vulnerabilities to fixing them, amid a surge in critical flaws.