Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Breaches

Foxconn Confirms North American Factories Hit by Cyberattack

The Nitrogen ransomware group claims to have hacked the company’s systems, stealing 8TB of data, including confidential documents.

Foxconn ransomware attack

Taiwanese electronics manufacturing giant Foxconn has confirmed that some of its North American factories have been hit by a cyberattack.

“The cybersecurity team immediately activated the response mechanism and implemented multiple operational measures to ensure the continuity of production and delivery. The affected factories are currently resuming normal production,” Foxconn told SecurityWeek

Foxconn, best known as the world’s largest provider of manufacturing services for Apple and other major global tech brands, confirmed being targeted by hackers after the Nitrogen ransomware group listed the company on its Tor-based leak website on March 12.

Foxconn hacked by Nitrogen ransomware group

The hackers claim to have stolen 8TB of data representing more than 11 million files, including confidential documents and schematics related to major customers such as Intel, Apple, Google, Dell, and Nvidia. 

The cybercriminals have published several screenshots to demonstrate their claims.

Foxconn is regularly targeted by threat actors, and it has been hit by ransomware groups multiple times in recent years. Foxconn subsidiary Foxsemicon was also targeted by a ransomware gang in 2024.

The Nitrogen ransomware group has been active since late 2024. Its website currently lists a few dozen organizations, including in the manufacturing, technology, and finance sectors. 

Advertisement. Scroll to continue reading.

The threat actor has been relying on file encryption and data theft to pressure victims into paying a ransom.

Related: Government to Scrutinize Instructure Over Canvas Disruption, Data Breach

Related: Mazda Says Employee, Partner Information Stolen in Cyberattack

Related: Toy Giant Hasbro Hit by Cyberattack

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this live webinar as we explore why exploitation is outpacing remediation, where risk is growing fastest, and what security leaders can do to close the gap before attackers take advantage.

Register

CodeSecCon bridges the gap between dev and security. Discover best practices for secure coding, innovative risk-reduction tools, and safe AI integration to cultivate a true DevSecOps culture. Safely secure your apps!

Register

People on the Move

The Department of Energy has appointed Andrew McClure as Director of the Office of Cybersecurity, Energy Security, and Emergency Response (CESER).

Sumo Logic has appointed Chris Malone as CEO and Conor Burns as CFO.

Nozomi Networks has appointed co-founder Andrea Carcano as CEO.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.