Quantcast

Airlines face increased cybersecurity threats amid rising reliance on digital infrastructure

Routes & Networks Latest: Rolling Daily Updates (W/C Sept. 22, 2025)
First new Qantas Airbus jets come with one toilet for every 90 economy passengers – worse than Jetstar, Scoot and Ryanair
Breeze Airways becomes the first new US flag carrier in a decade — just as rival Spirit fights its 2nd bankruptcy
Airport runway close calls spur hopes for wider adoption of cockpit alert technology
Family sues American Airlines over deadly crash near National Airport
United Airlines briefly grounds all flights in US, Canada for second time in 2 months
2025 Air Canada flight attendants strike
Spirit Airlines preparing to furlough one-third of its flight attendants
‘Hypocrisy’ and ‘blackmail’: Ryanair’s feud with Spain
Exclusive: Turkey's surprise Air Europa deal came down to one key thing: control
Major airline launches exciting new route from Scotland to popular US location
Airlines fear carbon tax as flagship climate scheme develops holes
Ryanair scraps three Vienna routes, demands lower taxes and fees
Turkish Airlines has no intention of raising stake in Spain's Air Europa, chairman says
US lawmakers want Trump to reinstate delay compensation plan for air travelers
IATA pushes to raise international pilot retirement age to 67
US orders Delta and Aeromexico to dissolve their partnership over fairness concerns in Mexico
Southwest’s New Wheelchair Policy Will Require Passengers to Remove 1 Item Before Boarding — What to Know
Aviation expansion: IndiGo to start direct Mumbai-Copenhagen flights from Oct 8; marks entry into Nordics - The Times of India
Major change for ALL Aer Lingus passengers flying from busy airport to offer 'modern and streamlined' experience
Southwest Airlines adds Sonoma County in California expansion - The Points Guy
Routes & Networks Latest: Rolling Daily Updates (W/C Sept. 8, 2025)
Delta Sees Record Premium Seats in '26, Main Cabin Flat or Down
Southwest requiring removal of batteries from mobility devices before boarding
Qantas’ milestone move for huge, new planes
EasyJet to launch 11 new flight routes from small UK airport named the best in Europe
Tycoon unveils £25 billion rival Heathrow expansion plan
Boeing and Airbus ground green plane projects
50 New Routes Launching In September 2025
JetBlue's Network Shake-Up: Its Top 10 Routes This Month
Airlines face increased cybersecurity threats amid rising reliance on digital infrastructure
Policy
Webp pat
Patrick Shanahan, President and CEO of Spirit AeroSystems | Simple Flying

Airlines and airports are facing growing challenges from cyberattacks, which have emerged as a significant threat to aviation safety. The reliance on complex technological systems for aircraft operations, airport management, and air traffic control has exposed new vulnerabilities that malicious actors are seeking to exploit.

Recent incidents have underscored the operational risks associated with both unintentional technical failures and targeted attacks. A notable example was the Southwest Airlines network failure a few winters ago, which left thousands of passengers stranded across the United States due to an inadvertent technological meltdown. This event highlighted how dependent airlines are on their digital infrastructure and raised concerns about what could happen if hackers were able to disrupt these systems intentionally.

Cybersecurity risks in aviation extend beyond traditional information technology weaknesses. Third-party vendor outages can cause major disruptions, as airlines often rely on external companies for critical services. For instance, a ransomware attack on Collins Aerospace's MUSE passenger processing platform disrupted check-in and baggage handling at several European airports. This incident demonstrated how a single supplier’s cybersecurity issue can halt operations across multiple locations.

Get the Newsletter
Sign-up to receive weekly round up of news from Sky Industry News
By submitting, you agree to our Privacy Policy and Terms of Service. By providing your phone number you are opting in and consenting to receive recurring SMS/MMS messages, including automated texts, to that number from our short code. Msg & data rates may apply. Reply HELP for help, STOP to end. SMS opt-in will not be sold, rented, or shared.

Another threat comes from individuals or groups such as SCATTERED SPIDER, who use malware and social engineering tactics to breach airline systems. These attackers target help desks to reset access controls before compromising virtual data infrastructure, posing both financial and safety risks for airlines and passengers.

A major IT outage occurred on July 19, 2024, when a faulty update from CrowdStrike Falcon affected Windows computers worldwide. The resulting crashes impacted sectors including banking, media, healthcare—and especially aviation—where check-in and dispatch systems failed extensively. Delta Air Lines was particularly affected, cancelling thousands of flights over several days. Remediation involved removing the faulty file remotely and recovering sensors; coordinated fixes were provided by Microsoft and CrowdStrike.

The incident revealed key vulnerabilities: high concentration risk due to dependence on a single endpoint vendor; insufficient staged rollouts; lack of independent verification checks; and inadequate fail-safe modes for operational teams. Industry experts stressed the need for improved resiliency measures in response.

In the aftermath, FBI advisories warned that similar attacks by malicious actors could lead to even more severe consequences if executed deliberately against airlines or their vendors. Audits found many exposures remained unpatched—particularly in internet-facing systems running legacy software—which remain attractive targets for hackers seeking weak points within networks.

To address these risks, industry experts recommend implementing phishing-resistance training for all staff members, enforcing strict identity verification protocols at every stage of system interaction, hardening identity systems from initial access points onward, segmenting networks internally, limiting remote access privileges strictly, demanding robust business continuity solutions from vendors, conducting regular joint exercises between airlines and airports simulating major outages (such as those caused by CrowdStrike), maintaining up-to-date asset inventories with weekly scans for threats, patching vulnerable assets promptly—even reverting to manual processes like paper flight plans during rehearsals.

Regulators have responded by moving cybersecurity requirements into formal obligations rather than voluntary best practices. In the United States, the Transportation Security Administration (TSA) now mandates performance-based controls—including network segmentation and continuous monitoring—for airport operators along with incident response plans and penalties for non-compliance. The Federal Aviation Administration (FAA) offers planning guidance tailored to individual operator needs while international bodies like the International Civil Aviation Organization push countries toward adopting comprehensive cybersecurity strategies as part of overall aviation safety policy frameworks.

In Europe, the European Aviation Safety Agency enforces stringent information security standards through binding agreements affecting airlines as well as maintenance providers and ground handlers—helping spread risk more broadly across stakeholders.

Experts agree that continued investment in defensive digital infrastructure is essential so that aviation organizations can prevent or quickly respond to cyberattacks when they occur. As one analysis concluded: safety remains paramount in air travel—but now includes defending against increasingly sophisticated cyber threats alongside traditional mechanical concerns.

Organizations Included in this History
More News

The Fair Work Commission has ruled that a former employee of dnata Airport Services was unfairly dismissed and awarded $36,468.39 in compensation.

Oct 22, 2025

The Los Angeles International Airport (LAX) has announced the closure of Terminal 5 to allow for a significant redevelopment.

Oct 22, 2025

The SFO Facility recently hosted a Breast Cancer Awareness Day, which was deemed a success by organizers.

Oct 22, 2025

Flying Food Group, Inc. recently held an appreciation event at its SFW facility to honor its employees.

Oct 22, 2025

Flying Food Group has announced that it contributes all of its taxable income annually to the Chicago-based Sue L. Gin Foundation Trust, which supports healthcare, education, legal aid, and immigration rights.

Oct 21, 2025

Eileen Ho, the Human Resources Manager of Flying Food Group, announced that the company will implement wage increases for cooks and coordinators following a lack of response from Unite Here to its Memorandum of Understanding (MOU).

Oct 21, 2025