A major cybersecurity incident struck airport operator Manchester Airports Group (MAG) over the weekend. Cybercriminals gained unauthorized access to the group’s IT systems, compromising the personal information of approximately 8.7 million people.
Following the data breach, the attackers demanded a ransom payment in exchange for returning the stolen data. However, official sources at MAG confirmed to the BBC that the company flatly refused to pay the demand. The exact sum requested by the cybercriminals was not disclosed by the airport group.
Scope of Compromised Data and Operational Impact
Given the scale of the incident, MAG management issued key clarifications regarding the extent of the intrusion and the safeguarding of its core operations:
- Operational Security Intact: The company reassured that passenger safety and aviation security were at no point compromised.
- No Financial Data Breached: The compromised system did not store or hold any customer banking information or payment details.
Nature of the Obtained Information
The vast majority of the leaked data consisted of email addresses collected when users registered for the free Wi-Fi service across the terminals operated by the firm:
- Manchester Airport
- East Midlands Airport
- London Stansted Airport
Additionally, the hackers obtained more specific customer details from those who had booked ground handling and terminal ancillary services, including:
- Vehicle License Plate/Registration Records: Obtained from users who booked parking spaces.
- Postal Codes and Contact Details: Associated with commercial transactions.
- VIP Service Bookings: Data derived from executive lounge access and Fast Track reservations.
Corporate Response and Authority Coordination
The airport group stated that it became aware of the cyber intrusion on Tuesday. The IT team immediately contained the risk to prevent the cybercriminals from maintaining or expanding network access, proceeding to notify affected customers whose data was compromised.
“We wish to reassure our customers that Manchester Airports Group takes user data security extremely seriously, and we apologize for any inconvenience or distress caused,” MAG said in an official statement.
The group confirmed it is collaborating closely with specialist cybersecurity advisors and working alongside relevant authorities. MAG indicated that the identity of those responsible for the attack is known and that law enforcement has been informed for appropriate action.
Passenger Guidance
As a precautionary measure, customers and passengers who have used the Wi-Fi services or booking platforms at Manchester, East Midlands, or London Stansted airports are urged to remain vigilant against suspicious emails, text messages, or phone calls, and to avoid opening attachments from unknown senders.
The case remains under investigation by UK authorities as MAG continues its containment protocols and bolsters its data protection infrastructure.
Related Topics
Copa Airlines Resumes Caracas Flights in September Following Earthquakes
Aerolíneas Argentinas Boosts International Network With Two New Southern Summer Destinations: Curaçao and Cartagena
Copa Airlines Requests Authorization to Operate Flights to Montería, Colombia
Wingo Strengthens Caribbean Connectivity with New Direct Route Between Bogotá and Puerto Plata

Plataforma Informativa de Aviación Comercial con 13 años de trayectoria.