Infamous Hackers Take Aim at Commercial Aviation | Aero-News Network
Aero-News Network
RSS icon RSS feed
podcast icon MP3 podcast
Subscribe Aero-News e-mail Newsletter Subscribe

Airborne Unlimited -- Most Recent Daily Episodes

Episode Date

Airborne-Monday

Airborne-Tuesday

Airborne-Wednesday Airborne-Thursday

Airborne-Friday

Airborne On YouTube

Airborne-Unlimited-06.23.25

Airborne-NextGen-06.24.25

AirborneUnlimited-06.25.25

Airborne-AffordableFlyers-06.26.25

AirborneUnlimited-06.27.25

Thu, Jul 03, 2025

Infamous Hackers Take Aim at Commercial Aviation

FBI Warns ‘Airline Ecosystem’ of the Scattered Spider Group

The FBI is warning the aviation industry that an infamous cybercriminal group, known as Scattered Spider, may be out to get it. The hackers are allegedly tricking airlines’ IT support into giving them access to sensitive data.

The group gained notoriety in 2023 after breaching MGM Resorts and Caesars Entertainment within days of each other. Their method, while seemingly effective, isn’t particularly high-tech: they rely on social engineering, posing as employees or contractors to manipulate IT support into giving them access to sensitive systems. From there, they bypass multi-factor authentication (MFA), add unauthorized devices, reset passwords, and steal data or deploy ransomware once inside.

"These techniques frequently involve methods to bypass multi-factor authentication (MFA), such as convincing help desk services to add unauthorized MFA devices to compromised accounts,” the agency stated.

According to the FBI, no direct impact on flight safety has been reported so far. Still, “anyone in the airline ecosystem” could be a target, including third-party IT providers and contractors.

Cybersecurity experts have reported incidents consistent with Scattered Spider’s tactics across the transportation sector. Their recommendation is to lock down identity verification procedures, especially when help desks are asked to modify MFA setups or reset credentials.

WestJet and Hawaiian Airlines have both recently reported cybersecurity incidents affecting their internal systems, though neither confirmed whether Scattered Spider was involved.

While there’s no indication these attacks have disrupted flight operations, the concern is clear: modern airlines rely on extensive digital infrastructure, and trust-based systems are proving to be vulnerable. The hackers aren’t breaking down firewalls… they’re just calling customer service and asking politely.

FMI: www.fbi.gov

Advertisement

More News

ANN's Daily Aero-Term (06.30.25): Ground Stop (GS)

Ground Stop (GS) The GS is a process that requires aircraft that meet a specific criteria to remain on the ground. The criteria may be airport specific, airspace specific, or equip>[...]

ANN's Daily Aero-Linx (06.30.25)

Aero Linx: Australian Transport Safety Bureau (ATSB) The Australian Transport Safety Bureau (ATSB) improves safety and public confidence in aviation, marine and rail transport thro>[...]

Aero-News: Quote of the Day (06.30.25)

“The Palo Alto stopover confirmed—yet again—that flight schools and aero-clubs are no longer just curious about electric training; they are ready to buy. In just >[...]

NTSB Final Report: ICON A5

Pilot’s Failure To Maintain Clearance From The Water While Flying At A Low Altitude Analysis: The flight of two airplanes was in cruise flight on a north heading about 50 ft >[...]

Airborne Affordable Flyers 06.26.25: PA18 Upgrades, ‘Delta Force’, Rhinebeck

Also: 48th Annual Air Race Classic, Hot Air Balloon Fire, FAA v Banning 100LL, Complete Remote Pilot The news Piper PA-18 Super Cub owners have been waiting for has finally arrived>[...]

blog comments powered by Disqus



Advertisement

Advertisement

Podcasts

Advertisement

© 2007 - 2025 Web Development & Design by Pauli Systems, LC