Elite Advanced LaserCorporation Listed by akira Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Elite Advanced LaserCorporation was listed by the akira ransomware group on February 12, 2025, after internal files were exfiltrated in an attack. An undisclosed number of people may have been affected; anyone connected to the company should verify their exposure and take protective steps.
Ransomware groups continue to target manufacturing and electronics supply-chain firms, using data theft and public leak threats to pressure victims. In this environment, listings on criminal leak sites have become a common way operators claim success and attempt to force negotiations, even when independent confirmation remains limited.
On 12 February 2025, Elite Advanced LaserCorporation was listed by the ransomware group known as akira. Public detail is limited: the number of people affected is unknown, and the precise method and full scope of any intrusion have not been independently verified. The listing itself is a claim by the group that it exfiltrated internal files and is prepared to publish a large volume of corporate material. For employees, customers and partners of an electronics manufacturing services firm, such a claim raises clear questions about the confidentiality of business records and contact data.
What happened
According to the reported summary, Elite Advanced LaserCorporation (also referred to as eLASER), headquartered in Chung Ho District, New Taipei City, Taiwan, was named on a leak site associated with the akira ransomware group. The group claims it carried out a ransomware attack that included the exfiltration of internal files. It further states it is ready to upload more than 90 GB of essential corporate documents. No independent confirmation of the intrusion timeline, the exact entry vector, or whether systems were encrypted has been provided in the available record. The number of individuals whose data may be involved remains unknown.
The listing therefore stands as an unverified claim of compromise and data theft rather than a fully documented incident with confirmed technical details. Organisations in the electronic manufacturing services sector routinely hold contracts, financial records and contact information; the group’s assertion that such material was taken is the core of the public report.
The group behind it: akira
Akira is a ransomware operation that has been active in recent years and is known for a double-extortion model: encrypting systems where possible while also stealing data and threatening to publish it if a ransom is not paid. The group typically maintains a leak site on which it names victims and, in some cases, releases sample files or larger archives. Public reporting on akira has described the use of common initial-access techniques, credential abuse and rapid data staging before encryption or pure exfiltration. The group has previously listed organisations across manufacturing, professional services and other sectors.
In this instance, the only specific assertions about Elite Advanced LaserCorporation come from the group’s own listing. Those assertions include the claim of more than 90 GB of corporate documents ready for upload and a description of the types of files allegedly taken. No further statements from the group about this particular victim appear in the provided facts, and the listing should be treated as a claim pending any confirmation by the company or independent investigators.
About Elite Advanced LaserCorporation
Elite Advanced LaserCorporation is described as an electronic manufacturing services (EMS) provider specialising in advanced optoelectronic and RF components used in information, optical and RF communication applications. Headquartered in Chung Ho District, New Taipei City, Taiwan, the company operates in a sector that supports global electronics supply chains. Firms of this type typically manage design or production data, supplier and customer contracts, quality and compliance documentation, and internal financial and human-resources records.
A breach affecting such an organisation is consequential because the data it holds often includes commercially sensitive agreements, technical or licensing information, and personal contact details of employees and business partners. Even without confirmed customer personal data of a highly sensitive nature, the exposure of contracts, financial audits and contact lists can create operational, competitive and privacy risks for the company and those who deal with it.
The information in question
The facts state that internal files were exfiltrated in a ransomware attack. The group claims the material includes more than 90 GB of essential corporate documents such as many NDAs, financial data (audits, payment details, reports), confidential licenses, agreements and contracts, and contact numbers and e-mail addresses of employees and customers, among other items. Exact contents beyond this description remain unconfirmed, and the total number of people affected is unknown.
Organisations in electronic manufacturing services commonly hold the kinds of records the group lists: non-disclosure agreements, payment and audit files, licences, commercial contracts, and directories of staff and customer contacts. Whether every category was in fact taken, and in what volume or sensitivity, has not been independently verified. Readers should therefore treat the detailed inventory as the group’s claim rather than established fact.
The real-world impact
If the claimed data were released or sold, employees and customers could face unwanted contact, phishing or social-engineering attempts that use genuine names, e-mail addresses or phone numbers. Financial and contractual documents could be used to understand payment practices, pricing or commercial relationships, creating competitive or fraud risks. NDAs and licences, if authentic, might expose confidential business arrangements.
For the organisation itself, the consequences can include operational disruption, costs of investigation and remediation, potential regulatory or contractual obligations to notify partners, and reputational harm among customers who rely on the confidentiality of manufacturing and supply-chain relationships. Because the scale of any personal-data exposure is unknown, the precise privacy impact cannot yet be quantified; the risk remains real for anyone whose contact or contractual information appears in the alleged archive.
Were you affected?
If you are an employee, customer or partner of Elite Advanced LaserCorporation, treat the listing as a reason for caution rather than confirmed personal compromise. Practical first steps include:
- Monitor work and personal e-mail accounts for unexpected messages that reference the company or request urgent action.
- Be alert to phishing or voice calls that use accurate names, job titles or contract details.
- Review financial and account statements for unusual activity if you have shared payment information with the firm.
- Change passwords on any accounts that reused credentials associated with company systems, and enable multi-factor authentication where available.
- Keep records of any suspicious contact and report it to the company or appropriate authorities if it appears linked to this incident.
Public confirmation of exactly whose data was taken has not been released. Readers can run a free exposure scan of their e-mail address to check whether that address has already appeared in known breach data sets; such a scan is one practical way to stay informed while official details remain limited.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
RORZE Technology Inc. Listed by akira Ransomware GroupQCN CO., LTD Listed by akira Ransomware GroupElite Advanced Laser Corporation Listed by akira Ransomware GroupRadial Engineering Listed by akira Ransomware GroupLatest breaches
Publicly posted by akira — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.