Manchester Airports Group Refused to Pay — So Hackers Published Everything
Manchester Airports Group (MAG), which operates Manchester, London Stansted, and East Midlands airports, disclosed last week that hackers had breached systems belonging to a third-party database provider, according to SecurityWeek.
The attacker, an extortion group calling itself FulcrumSec, says it got in using admin keys that were left exposed inside the public-facing JavaScript code of each airport's website. Think of it like hiding your front door key under a welcome mat, then posting a photo of the mat online.
MAG declined to pay. FulcrumSec published roughly 550 gigabytes of data anyway.
Breach notification site HaveIBeenPwned parsed the dataset and confirmed approximately 8.8 million email addresses and phone numbers were exposed. Names, vehicle registration plates, postal regions, residential IP addresses, browser details, and purchase records for airport parking, lounges, and fast-track services were also included. The attackers additionally claim to have captured over 461,000 SMS messages and more than 108,000 unique UK vehicle registration plates.
MAG confirmed no airport operations were disrupted.
If you have ever used car parking, a lounge, or fast-track services at any of the three airports, or connected to their in-airport Wi-Fi, your details may be in this dataset.
What to do: Check your email at haveibeenpwned.com. If you are in the breach, be alert to phishing emails using your name and travel details to appear convincing. Do not click links in unsolicited messages referencing airport bookings.
Sources

