Criminals publish data of 8.7m people after Manchester Airports Group hack

by | Sep 2, 2026 | Technology

Criminals publish data of 8.7m people after Manchester Airports Group hack

A cyber-criminal group has released the personal information of approximately 8.7 million individuals following a breach of Manchester Airports Group, which operates three major UK airports including Manchester, London Stansted, and East Midlands. The attackers demanded an undisclosed ransom, but their extortion attempt was unsuccessful. Despite failing to receive payment, the group made the stolen data publicly available online.

The compromised information includes contact details, vehicle registration numbers, postal codes, email addresses, phone numbers, addresses, licence plate numbers, purchase history, and device data associated with airport customers. Data breach analysts confirmed the breach contained what the attackers described as half a terabyte of personally identifiable information. Security researchers noted the dataset includes both historical location information and future travel plans, raising concerns about personal safety and privacy for affected individuals.

MAG stated it has implemented protective measures and contacted all affected individuals, including those with upcoming bookings. The company indicated it is cooperating with law enforcement and specialist security advisors. UK authorities, including the National Crime Agency, have been involved in the investigation.

Cyber-security experts warned that individuals should remain vigilant against follow-up scams and fraudulent activity using the stolen data. Those affected were advised to monitor financial accounts, report stolen identity documents to relevant issuers, use strong passwords with multi-factor authentication, and remain alert to suspicious communications. The accessibility of the leaked data on the public internet, rather than on hidden networks typically used for such materials, has increased vulnerability to secondary exploitation by other criminal actors.

The attackers claim to have used the same exploitation method across multiple victims, specifically targeting weaknesses in how companies secure digital access keys for internal networks. Authorities continue to advise victims of extortion not to pay ransoms, as such payments encourage further criminal activity.

Article Attribution | Read More at Article Source

Article summary produced by Claude AI