REvil ransomware gang says it has hacked Apple contractor Quanta Computer; source says it's demanding $50M ransom or it will leak more Apple product schematics
From Bloomberg's “Apple Targeted in $50 Million Ransomware Hack of Supplier Quanta” posted early Wednesday: David Bisson / Cybereason I Cybersecurity Software … : Sodinokibi Ransomware Gang Extorts Apple Through Supply Chain Attack Charlesarthur / The Overspill : Start Up No.1533: ransomware leaks new Apple Macbook design, App Store hacks get worse, the influencer life, Signal bites back, and more Phil Muncaster / infosecurity-magazine.com : DoJ Launches Ransomware Taskforce as Apple Hit by Extortion Attempt Firstpost Tech : Apple targeted in a $50 million ransomware attack, hackers get access to schematics of future products Tweets: Thaddeus E. Grugq / @thegrugq : Questionable use of hacked and leaked files. 9to5mac using data leaked by REvil to report on the next gen MacBook Pro. Dick move to reward ransomware groups like this https://9to5mac.com/... Vx-Underground / @vxunderground : REvil is extorting @Apple and Quanta Computer Inc. “In order not to wait for the upcoming Apple presentations, today we, the REvil group, will provide data on the upcoming releases of the company so beloved by many. Tim Cook can say thank you Quanta.” https://twitter.com/... Benjamin Mayo / @bzamayo : So some hackers are trying to blackmail $50m out of Apple's supplier, here's what they've leaked so far https://9to5mac.com/...
Context & Ripple Effects
REvil's Quanta claim follows its $50M extortion demand against Acer, suggesting the group is pursuing high-value technology targets with public leak threats. The prior day's initial Quanta breach claim has now been framed explicitly as pressure on Apple through its contractor.
The episode matters because a contractor breach puts Apple product materials into the extortion negotiation without requiring a direct breach of Apple itself.
First-order effects
- Quanta must respond to REvil's $50M demand and the risk that additional Apple product schematics are released.
- Apple faces potential exposure of product designs through a contractor, while REvil gains leverage by tying Quanta's breach to a high-profile customer.
Second-order effects
- Acer and Quanta show REvil using the same $50M demand against major technology-linked victims, increasing pressure on other contractors to treat leaked internal material as an extortion risk.
- Apple's other hardware suppliers face greater scrutiny over access to product schematics, since a breach at one contractor can create reputational and product-information exposure for the customer.
Third-order effects
- If this pattern persists, technology companies will treat contractor cybersecurity controls as protection for product intellectual property, not merely a supplier's operational safeguard.
- Ransomware groups are broadening their leverage from encrypted systems to public release threats, making supply-chain access a route to pressure larger brands.
The trend: Ransomware extortion is increasingly targeting the technology supply chain, using contractors' access to sensitive customer data to magnify leverage.