Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Back in 2009

Back in 2009 I holidayed in Utah for the new year with my then partner and met a few of his friends, one of whom worked for McAfee. After many drinks I jokingly said I wonder how all these people making viruses and malware make their money as it’s a time consuming game of cat and mouse. I insinuated the antivirus guys were funding the viruses and malware to create demand. He looked at me and just took a large swig of Guinness. To this day, I don’t know if he was being sarcastic or not.

It always made me wonder how these people support themselves financially when most of the time they’re not gaining anything from their work - unless they’re privately funded esp government intelligence operations (and as former intelligence that is absolutely true).

It’s capitalism - without increased demand profits drop. Basic supply and demand.
Ransomware income.
 
  • Like
Reactions: CDPlayer


One of Apple's key manufacturing partners in India has confirmed it was recently the target of a cyberattack that has resulted in confidential Apple documents being leaked on the dark web.

apple-education-hub-india-factory.jpg

Tata Electronics said on Monday it had detected a "cybersecurity incident," after security researchers told Reuters that ransom group World Leaks had shared more than 200,000 files belonging to Apple and Tesla, both of which are customers of the Indian group.
Apple has not commented on the leak, but a source familiar with the matter told the outlet that Apple was investigating the breach and a "full analysis was going on." Tata is believed to have received a ransom demand related to the incident, but the group declined to comment.

Many of the leaked files allegedly contain component design and specification papers. For example, one 52-page document has Apple's proprietary markings and purportedly details quality inspection standards ⁠for iPhone circuit board components. The files are ⁠also said to contain emails, event logs spanning several years, and passport copies of employees including foreign nationals.

Reuters wasn't able to independently verify the documents, which have been available on the dark web – which is beyond the reach of search engines – since at least June 10, according to researchers.

Tata is emerging as one of Apple's most important manufacturing partners outside China, and the breach is another setback for the group. It is also currently facing a health probe over alleged contamination of farmlands near one of its iPhone parts plants.

Article Link: Confidential Apple Files Leaked on Dark Web After Supplier Cyberattack
It’s a low trust society. You were expecting confidentiality?
 
Ahhhh, good catch. Yeah, ransomware has become a massive problem since 2009.
Yeah I prefer the good days when a solid defacement and bragging rights were the goal. Good times helping those IIS customers recover from those. I was always amazed at how few of them had full backups of their web code. ASP.NET was the worst.
 
  • Like
Reactions: CDPlayer
Why would MR want to be liable for disclosing how to find illegal content? If you really cared that much, I'd sure a smart person like you could figure it out.
Do you think someone who asks, point blank, on a public forum, “Where does someone who wants to access this dark web even go?” is very smart? Unless you’re partaking in the very Anglo-Saxon art of the backhanded compliment, of course… 🤣
 
Do you think someone who asks, point blank, on a public forum, “Where does someone who wants to access this dark web even go?” is very smart?
To be honest, I am not sure that this "someone" is even real. After OpenClaw and Moltbook I am pretty sure, there are thousands of AI Agents trying to learn how to imitate a human by participating in "real" forums.
 
Disclosure: I work as a cyber security analyst, so take the "which vendor" bits with a grain of salt — but the back-and-forth above about verifying dark web claims is worth adding to.


A few things that actually matter when a leak claim like this surfaces, for anyone wondering how legitimate outlets (and analysts) verify this stuff without touching the files directly:


  • Actor track record — is the group (World Leaks here) known for real breaches, or for relisting old/recycled data to get attention? Groups with a longer confirmed history get more weight.
  • Sample validation — researchers typically check a small, specific sample (file metadata, internal naming conventions, timestamps) against what's publicly known about the target, without downloading or redistributing the full set.
  • Corroboration from the target — Tata confirming "a cybersecurity incident" independently, before the file contents were verified, is a meaningful signal on its own.
  • No need to link the source — the legal risk raised above (CFAA, trade secret exposure) is exactly why credible reporting describes leak contents without linking the dump itself.

This is basically the workflow Cyble dark web monitoring tools (Cyble included, plus Recorded Future, Flashpoint, etc.) run behind the scenes before an alert ever reaches a customer — confirm actor credibility and sample authenticity before treating a claim as real.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.