AerCap Sees Ransomware Attack | Aero-News Network
Aero-News Network
RSS icon RSS feed
podcast icon MP3 podcast
Subscribe Aero-News e-mail Newsletter Subscribe

Airborne Unlimited -- Most Recent Daily Episodes

Episode Date

Airborne-Monday

Airborne-Tuesday

Airborne-Wednesday Airborne-Thursday

Airborne-Friday

Airborne On YouTube

Airborne-SpecialEpisode-12.15.25

AirborneNextGen-
12.16.25

Airborne-Unlimited-12.10.25

Airborne-AffordableFlyers-12.11.25

AirborneUnlimited-12.12.25

AFE 2025 LIVE MOSAIC Town Hall (Archived): www.airborne-live.net

Fri, Jan 26, 2024

AerCap Sees Ransomware Attack

Aircraft Lessor Hit with 1-Terabyte Hack from 'Slug' Group

AerCap confirmed a ransomware attack in a filing with the US Securities and Exchange Commission, stating that the firm was robbed of 1 terabyte of data by the "Slug" group.

The group has threatened to slowly trickle out releases of the data unless AerCap pays their ransom, setting a 2-week deadline to begin paying. The leak plans appear to have 5 gigabytes published after 3 days of non-payment, 30 gigs after a week, with the rest of the data published at the end of the 2-week term. No indication has been given of how much the ransom sits at.

Slug seemed like a small-timer at first, with only the AerCap caper to their hame,but things have a way of moving quickly in the ransomware space. Unlike the usual method of exploiting weaknesses and encrypting the data and systems of a target, Slug opted for a less invasive and hands-off method. They merely copied internal AerCap data without encrypting anything, allowing the firm to continue on with business as usual. (By ransomware standards, it's a courtesy, though the extortion angle mitigates the kindness quite a bit.) The only drive to enforce ransom payment is the fear of public disclosure of their internal documentation. The company hasn't been too noisy about the hack, and their tone so far appears nonplussed about the whole affair.

In their Form K-6 to the SEC, AerCap gave a brief overview of the event. "On January 17, 2024, we experienced a cybersecurity incident related to ransomware. We promptly took steps to investigate with the support of third-party cybersecurity experts and notified law enforcement. We have full control of all of our IT systems and to date, we have suffered no financial loss related to this incident. Our investigation into this incident, including the extent to which data may have been exfiltrated or otherwise impacted, remains ongoing."

FMI: www.aercap.com

Advertisement

More News

ANN's Daily Aero-Term (12.19.25): Ultrahigh Frequency (UHF)

Ultrahigh Frequency (UHF) The frequency band between 300 and 3,000 MHz. The bank of radio frequencies used for military air/ground voice communications. In some instances this may >[...]

NTSB Prelim: Cirrus Design Corp SR22T

During The 7 Second Descent, There Was Another TAWS Alert At Which Time The Engine Remained At Full Power On October 24, 2025 at 2115 mountain daylight time, a Cirrus SR22T, N740TS>[...]

Classic Aero-TV: The Red Tail Project--Carrying the Torch of the Tuskegee Airmen

From 2009 (YouTube Edition): Educational Organization Aims to Inspire by Sharing Tuskegee Story Founding leader Don Hinz summarized the Red Tail Project’s mission in simple, >[...]

Aero-News: Quote of the Day (12.19.25)

“This feels like an important step since space travel for people with disabilities is still in its very early days... I’m so thankful and hope it inspires a change in m>[...]

Airborne 12.17.25: Skydiver Hooks Tail, Cooper Rotax Mount, NTSB v NDAA

Also: New Katanas, Kern County FD Training, IndiGo’s Botched Roster, MGen. Leavitt Named ERAU Dean The Australian Transportation Safety Bureau (ATSB) has wrapped up its inves>[...]

blog comments powered by Disqus



Advertisement

Advertisement

Podcasts

Advertisement

© 2007 - 2025 Web Development & Design by Pauli Systems, LC