A cyber attack affected about 8.7 million passengers at three UK airports. Photo / 123rf
About 8.7 million passengers have been affected by a cyber attack on a group of airports.
The Manchester Airports Group (MAG) – which operates Manchester, London Stansted and East Midlands airports – was made aware of the cyber intrusion on Tuesday. The hack is believed to have taken place a
few days earlier.
Cyber criminals demanded a ransom in exchange for promising to return and delete stolen information.
A source said MAG managers had decided “very quickly” not to pay. Neither the attackers’ identity, which is known to the authorities, nor the amount they demanded was revealed.
Data relating to car park, lounge and fast-track security bookings at all three airports were accessed, including passengers’ email addresses, phone numbers, vehicle registrations and postcodes.
However, more than 90% of the stolen data were email addresses, a source told the Telegraph, because people connecting to the airport’s free Wi-Fi must give an email address to log in.
The attackers gained access to computer systems at MAG over the weekend. Their point of entry has been identified and shut off.
The hackers had boasted of using AI to help them carry out the attack, the source added.
A spokesman for MAG said the attack had been restricted to email addresses for the “vast majority” of customers affected.
The security incident did not reveal any bank details, and those affected were sent an email notifying them.
The email stated: “Our investigation has identified that some of your personal information relating to airport car parking, lounge, fast-track bookings and on-airport Wi-Fi sign-ups has been accessed by an unauthorised third party.
“Neither MAG nor the system accessed hold customers’ bank or payment details. We took immediate action to secure the affected system and are working with cyber security specialists and the relevant authorities.
“We would like to reassure you that Manchester Airport Group takes the security of customer information extremely seriously and we are taking appropriate actions to manage the incident. There is no action you need to take.”
The company apologised for “any inconvenience or concern this may cause”.


