Data of 8.7 million customers stolen in cyber attack on Manchester, Stansted and East Midlands Airports

The personal details of approximately 8.7 million customers have been compromised following a major cybersecurity incident targeting Manchester, London Stansted and East Midlands airports.
Manchester Airports Group (MAG), which operates the three airports, announced that an unauthorised third party gained access to a specific system containing customer data on Thursday afternoon.
The stolen information includes email addresses, phone numbers, vehicle registrations, and postcodes linked to car park reservations, airport lounge bookings, Fast Track passes, and in-airport Wi-Fi sign-ups.
The cyber attack struck during the peak summer travel season, a period when millions of families return from holidays ahead of the new school year. Together, Manchester, Stansted, and East Midlands handle tens of millions of passengers annually.
Despite the massive breach of personal data, MAG has strongly reassured the public that neither passenger safety nor aviation security was compromised at any point. Furthermore, airport operations, flights, and customer parking services have continued to run entirely uninterrupted.
Importantly, MAG confirmed that the attack did not include any financial data, meaning customers’ bank details and payment information remain safe.
In an email sent directly to affected individuals, the airport group urged customers to remain vigilant. “We would urge you to be particularly cautious of unexpected emails, calls or text messages claiming to be from us,” the statement read, adding that the company will never contact passengers unexpectedly to ask for payment or banking information.
MAG representatives stated that the risk was contained immediately upon discovery. The group is currently working alongside cybersecurity specialists and relevant authorities, including the Information Commissioner’s Office, to investigate the breach and protect affected systems.
Legal experts and industry analysts note that the incident highlights the mounting cyber threats facing operators of critical national infrastructure. Because airports routinely collect substantial amounts of consumer data for ancillary services such as parking and Wi-Fi, they represent lucrative targets for malicious actors.
The attack on MAG follows a wave of high-profile digital intrusions targeting critical infrastructure and major British corporations in recent years. While investigations continue, affected customers are advised to watch out for potential phishing attempts or fraudulent communications using the stolen contact details.
Discover more from Tech Digest
Subscribe to get the latest posts sent to your email.
