Criminals publish data of 8.7m people after Manchester Airports Group hack

by | Sep 6, 2026 | Technology

Criminals publish data of 8.7m people after Manchester Airports Group hack

Criminal hackers have released the personal information of approximately 8.7 million individuals following a successful breach of Manchester Airports Group (MAG), which operates Manchester, London Stansted, and East Midlands airports. The hackers demanded a ransom from the company but did not receive payment, leading them to publish the entire dataset publicly online.

The exposed data includes email addresses, phone numbers, residential addresses, vehicle license plate numbers, purchasing history, and details about the devices used to access the airports’ networks. The breach appears to have compromised databases containing login credentials for wireless networks and car parking services. Security researchers at HaveIBeenPwned have verified the authenticity of the published information, confirming it represents a significant collection of personally identifiable information.

The cyber criminal group has made the stolen database freely available to other criminal organizations through their website, rather than restricting access as is typical in such incidents. The hackers hosted their leak site on the standard internet rather than on the dark web, making the data more readily accessible and increasing potential exposure to further attacks and scams. Cyber-security experts have warned individuals affected by the breach to remain vigilant against secondary exploitation, particularly those whose travel patterns and future movements are documented in the stolen data.

Company officials stated they have implemented protective measures and contacted all affected individuals, including those with upcoming bookings. MAG is collaborating with law enforcement agencies including the National Crime Agency and specialist cybersecurity advisors. The hackers have claimed they exploited vulnerabilities in how the company manages digital security keys for internal networks, a technique they reportedly used across multiple recent breaches. Authorities continue to advise victims of extortion attacks against paying ransoms, citing evidence that such payments perpetuate criminal activity in the cybersecurity threat landscape.

Article Attribution | Read More at Article Source

Article summary produced by Claude AI