GKRootWire
Cloud & Sysadmin Microsoft Confirms Preview Update Wipes Out Desktop SettingsAI Nvidia to Acquire Hugging Face for $12.9 BillionDev Tools A Deep Dive Into Intrusive Linked ListsGadgets DJI's Romo 2 Robovac Adds Local-Only Mode After Privacy ScareAI Nvidia Reportedly Moves to Acquire Hugging FaceAI Anthropic Launches Claude Tools for AI Shopping AgentsCloud & Sysadmin Microsoft Confirms Preview Update Wipes Out Desktop SettingsAI Nvidia to Acquire Hugging Face for $12.9 BillionDev Tools A Deep Dive Into Intrusive Linked ListsGadgets DJI's Romo 2 Robovac Adds Local-Only Mode After Privacy ScareAI Nvidia Reportedly Moves to Acquire Hugging FaceAI Anthropic Launches Claude Tools for AI Shopping Agents
Security

FBI Investigates Fake Wi-Fi Hotspot Attack on Delta Flight After DEF CON

Passengers returning from the hacker conference are suspected of spinning up a rogue wireless network mid-flight to snoop on fellow travelers.

The FBI's Atlanta field office has confirmed it is investigating a case involving a fraudulent Wi-Fi hotspot broadcast aboard a Delta flight, reportedly timed to the return leg of travel from this year's DEF CON security conference in Las Vegas. The setup is a classic "evil twin" attack: someone creates a wireless network with a name mimicking the airline's legitimate in-flight Wi-Fi service, hoping unsuspecting passengers connect and unknowingly route their traffic through the attacker's device.

Details remain thin, and no arrests have been made. The DEF CON connection is circumstantial but plausible — the conference draws tens of thousands of security researchers and hobbyists each year, and pranks or unauthorized demonstrations of wireless attacks by attendees during their travel home are a running, if unofficial, tradition. Whether this incident was a harmless stunt or an attempt to actually harvest credentials and data is still unclear.

Delta has not issued detailed public comment beyond confirming awareness of law enforcement involvement. In-flight Wi-Fi networks are a known soft spot for this kind of attack because passengers are primed to expect unfamiliar, paywalled login screens, making a spoofed portal far less suspicious than it would be on the ground.

Why it matters: Evil-twin Wi-Fi attacks are cheap, simple to execute, and disturbingly effective specifically because in-flight networks already train users to trust weird captive portals and pay screens. Frequent flyers should treat any airline Wi-Fi login as untrusted by default — use a VPN, avoid entering payment or account credentials on portal pages, and verify network names with crew when possible.

Sources: Ars Technica