A recent data breach at the Manchester Airports Group (MAG) has resulted in the exposure of personal information belonging to 8.8 million individuals. The incident, which involved a ransomware attack, has raised significant concerns about data security and protection.
Details of the Data Breach
Last week, MAG revealed that hackers had infiltrated its systems, compromising sensitive data related to car park, lounge, and Fast Track bookings, as well as airport Wi-Fi sign-ups. The affected airports include Manchester, London Stansted, and East Midlands.
According to the disclosure, the attackers accessed email addresses, phone numbers, vehicle registrations, and postcodes. However, MAG assured that the breach did not disrupt airport operations.
Third-Party Database and Ransom Demand
The compromised information was stored in a third-party database. MAG received a ransom demand from the attackers, yet chose not to disclose further details about the interaction.
The FulcrumSec extortion group has claimed responsibility for the breach, releasing approximately 550 gigabytes of uncompressed data allegedly stolen from MAG systems.
Scope of the Exposed Data
FulcrumSec alleges that the leaked data encompasses personal details of 8.7 million individuals. This includes names, emails, phone numbers, residential regions, and IP addresses.
Data breach monitoring site HaveIBeenPwned confirmed the exposure of 8.8 million email addresses and phone numbers. Other compromised data includes browser details, purchase histories, and vehicle registration information.
The attackers reportedly accessed MAG’s systems using administrative keys left exposed in the JavaScript of the airports’ websites across their root domains. Despite the breach, MAG did not comply with the ransom demand.
This incident highlights the critical importance of safeguarding personal data, particularly when managed by third parties. Organizations must implement robust security measures to prevent unauthorized access and protect user information.
