Urgent.News

What's breaking now, across thousands of outlets.

Tech

Manchester Airports hackers just posted the data of 8.7 million people online — failed extortion attempt triggers data dump sale

FulcrumSec attempted to extort Manchester Airports Group, but failed. Now, the cyber-criminals have published the information online.

Manchester Airports hackers just posted the data of 8.7 million people online — failed extortion attempt triggers data dump sale

The hacker group FulcrumSec has claimed responsibility for a recent data breach at Manchester Airport Group (MAG), which resulted in the unauthorized posting of sensitive information online. The data compromised includes personally identifiable information (PII) such as email addresses, phone numbers, vehicle registrations, and postcodes of 8.7 million individuals.

This breach occurred despite MAG's assurance that they had implemented effective security measures to protect their customers. In response to the hackers' failed extortion attempt, MAG promptly contacted all affected individuals and provided additional support to those with upcoming bookings.

FulcrumSec's decision to publicly release the stolen data is an effort to recoup some financial gain from their hacking efforts. By posting the trove of information online, the hackers hope another cybercriminal group will pay for access to the valuable data, which can be used to launch highly targeted phishing campaigns. This could potentially involve scams that exploit victims' email addresses, car registrations, and postcodes.

The breached information is reportedly much more extensive than initially disclosed, encompassing booking history, travel dates, vehicle information, purchase references, and customer profiles.

Experts warn that the risk of such breaches has escalated due to the increasing use of artificial intelligence (AI) in crafting personalized phishing and social-engineering attacks. FulcrumSec, a relatively new and credible data-extortion group, has been linked to previous campaigns that leverage large language models (LLMs) to analyze stolen data and generate highly targeted phishing campaigns.

As a result, it is crucial for affected customers to remain vigilant and cautious, scrutinizing any communication related to their bookings, travel, or airline services. MAG customers are advised to avoid clicking on suspicious links and instead access their booking information directly through the official airport or provider websites.

Written by urgent.news from TechRadar's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at techradar.com →

More in Tech

More from Wednesday 2 September →