logo
Rampant cybercriminal group targets US airlines

Rampant cybercriminal group targets US airlines

CNNa day ago

A notorious cybercriminal group has shifted its attention to the aviation industry, successfully breaching the computer networks of multiple airlines in the United States and Canada this month, according to the FBI and private experts responding to the hacks.
The hacking hasn't affected airline safety, but it has top cyber executives at major airlines across the United States on alert because of the hacking suspects: A network of young cybercriminals called 'Scattered Spider' who are known for their aggressive efforts to extort or embarrass their victims.
It's a fresh headache for the travel industry as the busy summer travel season kicks into high gear. This is now the third major US business sector in the last two months, after insurance and retail, to face a flurry of cyberattacks tied to the criminal group.
The hackers target big companies and their IT contractors, 'which means anyone in the airline ecosystem, including trusted vendors and contractors, could be at risk,' the FBI said Friday night in a statement that named Scattered Spider as the perpetrator of the airline hacks. 'Once inside (a victim's network), Scattered Spider actors steal sensitive data for extortion and often deploy ransomware,' the FBI said.
The FBI, the statement continued, 'is actively working with aviation and industry partners to address this activity and assist victims.'
Hawaiian Airlines and Canada's WestJet confirmed this week that they were still assessing the fallout from recent cyberattacks, though the airlines did not name the perpetrators. More victims in the aviation industry could come forward, sources briefed on the investigation said.
WestJet's issues began two weeks ago, when the airline said it was responding to a 'cybersecurity incident' that was affecting access 'to some services and software systems,' including its app for customers. Both WestJet and Hawaiian Airlines said their operations were unaffected by the hacks.
The lack of impact on operations at the airlines is 'likely a sign of good internal network separations or good business continuity and resiliency planning,' said Aakin Patel, the former chief information security officer of Las Vegas' main airport.
It is not just the airlines themselves, but other 'segments of the aviation ecosystem' that are seeing increased cyberattacks, according to Jeffey Troy, the president of the Aviation ISAC, an industry group for sharing cyber threats. 'Our members are keenly alert to attacks from financially motivated attackers and collateral impacts emanating out of geo-political tensions around the world,' Troy said in a statement to CNN.
The fine margins for error in the airline industry were on display Friday, when a separate IT outage, apparently unrelated to malicious cyber activity, caused delays for some American Airlines passengers.
The Scattered Spider hacks have mobilized people across the industry to respond. In-house cybersecurity experts at major airlines have been closely monitoring the situation, sources familiar with the response told CNN, while cybersecurity firms such as Google-owned Mandiant are helping with the recovery and urging airlines to secure their customer service call centers.
One of Scattered Spiders' preferred methods of infiltrating corporations is calling up help desks and pretending to be employees or customers. The technique has been highly effective for hackers to gain access to the networks of big companies.
'Airlines rely heavily on call centers for a lot of their support needs,' Patel told CNN, making them 'a likely target for groups like this.'
Scattered Spider gained attention in September 2023 when they were linked to a pair of multimillion-dollar hacks on Las Vegas casinos and hotels MGM Resorts and Caesars Entertainment. The hackers tend to pick one sector to target for weeks on end. Earlier this month, they were the suspect in a hack of insurance giant Aflac that potentially stole Social Security numbers, insurance claims and health information. Before that, it was the retail sector: The hackers, according to an internal memo obtained by CNN, targeted Ahold Delhaize USA, which has the same parent company as the Giant and Food Lion grocery chains.
'The actor's core tactics, techniques, and procedures have remained consistent,' Mandiant chief technology officer Charles Carmakal said Friday in a statement, and that it 'is aware of multiple incidents in the airline and transportation sector' that resemble the operations of Scattered Spider.

Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

2 people struck by driver at OpenStreetsPGH event
2 people struck by driver at OpenStreetsPGH event

CBS News

time8 minutes ago

  • CBS News

2 people struck by driver at OpenStreetsPGH event

Two people were struck after a driver broke through a barricade at the OpenStreetsPGH event in Pittsburgh on Sunday. A female driver was reported to be driving along the car-free route around 11 a.m. when she allegedly struck an adult male cyclist with her vehicle's sideview mirror at the intersection of Hamilton Avenue at North Braddock Avenue, according to Pittsburgh police. The man refused medical evaluation, but did confirm to authorities that he was struck and knocked down by the mirror during the incident. The driver then proceeded along the course and struck a female cyclist near the intersection of Thomas Boulevard and Brushton Avenue. The female victim was evaluated at the scene by EMS personnel but was not transported to a hospital. After the second incident, the driver was apprehended by deputies from the Allegheny County Sheriff's Office, who were assigned to patrol the event. "Several deputies from my office were assigned to the public safety detail for today's OpenStreetsPGH event in the eastern neighborhoods of the city. Three deputies were able to stop the movement of the vehicle. Once it stopped, the driver became verbally abusive and non-compliant with commands from the deputies, resulting in the driver's side window being broken, at which point the female was removed from the vehicle and taken into custody," Sheriff Kevin Kraus said in a statement. "I want to commend the quick action of these deputies to immediately intervene in a dangerous situation, preventing further escalation by this driver." Charges are expected to be filed against the driver.

1 dead, 2 injured after 2 Jeeps collide, 1 rolls over on I-94 near Gratiot in Detroit
1 dead, 2 injured after 2 Jeeps collide, 1 rolls over on I-94 near Gratiot in Detroit

Yahoo

time9 minutes ago

  • Yahoo

1 dead, 2 injured after 2 Jeeps collide, 1 rolls over on I-94 near Gratiot in Detroit

One person was killed and two others were injured when two Jeeps collided on westbound Interstate 94 near Gratiot Avenue in Detroit on Saturday evening, June 28, according to police. At around 7:10 p.m., a silver Jeep in the left lane and a green Jeep in the center lane of I-94 attempted to change lanes at the same time and struck each other, causing the drivers to lose control, according to Michigan State Police Second District in a post on X. The driver of silver Jeep struck the median wall and rolled over, while the other Jeep went off the road and hit a tree on the right embankment of the highway, state police said. A 27-year-old from St. Clair Shores who was a passenger in the Jeep that hit the median wall was killed, according to state police. The driver of that Jeep and another passenger were transported to a local hospital for treatment of minor injuries, troopers said. The driver and a passenger in the other Jeep were not injured, police said. More: Wayland man, 24, dies after falling 30 feet from lift that that hit live electrical lines I-94 was closed for about four hours following the crash to investigate, and troopers are continuing to investigate the crash as of Sunday morning, June 29, according to MSP. "We want to remind drivers to be careful when changing lanes," said Public Information Officer Lt. Mike Shaw said in the X post. "Make sure you use your turn signal, check your mirrors and blind spots, and then start to change lanes." Shaw did not immediately respond to request for comment. This article originally appeared on Detroit Free Press: Jeep flips after collision on I-94 in Detroit, killing 1, injuring 2

Person shot in CT city Sunday was allegedly targeted and ‘chased by another car'
Person shot in CT city Sunday was allegedly targeted and ‘chased by another car'

Yahoo

time11 minutes ago

  • Yahoo

Person shot in CT city Sunday was allegedly targeted and ‘chased by another car'

One man was shot and sustained a non-life-threatening following a shooting in New Haven early Sunday morning. The New Haven Police Department was dispatched to the 100 block of Bassett Street for a report of a car that crashed into a tree at approximately 2:45 a.m. Sunday, according to the New Haven Police Department. When police arrived, the vehicle was unoccupied, but police round the victim and another passenger walking about a block away. Police said both were taken to Yale-New Haven Hospital for non-life-threatening injuries. 'It appears that the victim was being targeted and chased by another vehicle at the time of the shooting,' according to the New Haven Police Department. Police ask anyone who has witnessed the incident or may have information valuable to the investigation to call detectives at (203) 946-6304 or at the anonymous tip line at 866-888-TIPS (8477).

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store