Infamous Hackers Take Aim at Commercial Aviation | Aero-News Network
Aero-News Network
RSS icon RSS feed
podcast icon MP3 podcast
Subscribe Aero-News e-mail Newsletter Subscribe

Airborne Unlimited -- Most Recent Daily Episodes

Episode Date

Airborne-Monday

Airborne-Tuesday

Airborne-Wednesday Airborne-Thursday

Airborne-Friday

Airborne On YouTube

Airborne-Unlimited-10.27.25

AirborneNextGen-
10.28.25

Airborne-Unlimited-10.29.25

Airborne-Unlimited-10.30.25

AirborneUnlimited-10.17.25

Thu, Jul 03, 2025

Infamous Hackers Take Aim at Commercial Aviation

FBI Warns ‘Airline Ecosystem’ of the Scattered Spider Group

The FBI is warning the aviation industry that an infamous cybercriminal group, known as Scattered Spider, may be out to get it. The hackers are allegedly tricking airlines’ IT support into giving them access to sensitive data.

The group gained notoriety in 2023 after breaching MGM Resorts and Caesars Entertainment within days of each other. Their method, while seemingly effective, isn’t particularly high-tech: they rely on social engineering, posing as employees or contractors to manipulate IT support into giving them access to sensitive systems. From there, they bypass multi-factor authentication (MFA), add unauthorized devices, reset passwords, and steal data or deploy ransomware once inside.

"These techniques frequently involve methods to bypass multi-factor authentication (MFA), such as convincing help desk services to add unauthorized MFA devices to compromised accounts,” the agency stated.

According to the FBI, no direct impact on flight safety has been reported so far. Still, “anyone in the airline ecosystem” could be a target, including third-party IT providers and contractors.

Cybersecurity experts have reported incidents consistent with Scattered Spider’s tactics across the transportation sector. Their recommendation is to lock down identity verification procedures, especially when help desks are asked to modify MFA setups or reset credentials.

WestJet and Hawaiian Airlines have both recently reported cybersecurity incidents affecting their internal systems, though neither confirmed whether Scattered Spider was involved.

While there’s no indication these attacks have disrupted flight operations, the concern is clear: modern airlines rely on extensive digital infrastructure, and trust-based systems are proving to be vulnerable. The hackers aren’t breaking down firewalls… they’re just calling customer service and asking politely.

FMI: www.fbi.gov

Advertisement

More News

ANN's Daily Aero-Term (10.31.25): Minimum Sector Altitude [ICAO]

Minimum Sector Altitude The lowest altitude which may be used under emergency conditions which will provide a minimum clearance of 300 m (1,000 feet) above all obstacles located in>[...]

ANN's Daily Aero-Linx (10.31.25)

Aero Linx: African Civil Aviation Commission (AFCAC) At AFCAC, our Safety Strategic Objective is to enhance Aviation Safety and the efficiency of Air Navigation Services in Africa.>[...]

NTSB Final Report: Airbus A321-271N (A1); Cessna 172N (A2)

The Local Controller’s Poor Judgment In Prioritization Of Their Ground Traffic Ahead Of Their Airborne Traffic Analysis: Hawaiian Airlines flight 70 (HAL70), N2165HA, an Airb>[...]

ANN FAQ: Follow Us On Instagram!

Get The Latest in Aviation News NOW on Instagram Are you on Instagram yet? It's been around for a few years, quietly picking up traction mostly thanks to everybody's new obsession >[...]

Airborne 10.30.25: Earhart Search, SpaceX Speed Limit, Welcome Back, Xyla!

Also: Beech M-346N, Metro Gains H160 EMS STC, New Bell Boss, Affordable Flying Expo Tickets NOW On Sale! Purdue University’s Research Foundation and the Archaeological Legacy>[...]

blog comments powered by Disqus



Advertisement

Advertisement

Podcasts

Advertisement

© 2007 - 2025 Web Development & Design by Pauli Systems, LC