GKRootWire
Security ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm ForecastsSecurity ICE Signs $2M Deal for Zero-Click Phone Hacking ToolSecurity Attackers Exploit Critical Elementor Pro Bug to Hijack WordPress SitesAI ChatGPT Goes Down, Serves 404 Errors to UsersAI ChatGPT and Codex Suffer Widespread OutageAI Google DeepMind's WeatherNext 3 Sharpens AI Weather ForecastingAI Google's New AI Weather Model Sharpens Storm Forecasts
Security

Manchester Airports Group Confirms Hackers Stole Traveler Data

A breach at the operator of three major UK airports exposed customer information tied to airport Wi-Fi sign-ups.

Manchester Airports Group (MAG), which runs Manchester, Stansted, and East Midlands airports, has disclosed a cyberattack in which hackers accessed and stole customer data. The exposed information includes details submitted when travelers signed up for airport Wi-Fi networks, a service used by huge numbers of passengers passing through the three hubs.

MAG says it is investigating the scope of the breach and working with security experts and relevant authorities to determine exactly what data was taken and how attackers got in. The company has not yet detailed the total number of affected travelers or specified whether more sensitive data, such as payment details, was involved.

As with many breach disclosures, the full picture is still emerging, and affected customers may face follow-up phishing attempts using the stolen information.

Why it matters: Airport Wi-Fi portals collect personal data from a huge, transient population of travelers who rarely think twice about signing up, making them an attractive and often under-secured target. Breaches like this are a reminder that critical infrastructure operators need the same security rigor as banks or tech companies, since stolen contact data can fuel convincing phishing and smishing campaigns against travelers.

Sources: BleepingComputer