FulcrumSec claims Manchester Airports hack, theft of 86 GB of data

Manchester Airports Group Hit by Large-Scale Data Breach, Exposing Sensitive Customer Information

A massive data breach has struck Manchester Airports Group (MAG), compromising approximately 86 GB of sensitive customer information. The attackers, claiming to be from the financially motivated extortion group FulcrumSec, have revealed that they stole detailed records related to car park bookings, in-airport Wi-Fi registrations, and Fast Track purchases for customers using Manchester, London Stansted, and East Midlands airports.

The breach appears to have exposed nearly 200,000 records containing dates, times, and booking information linked to personally identifiable information. These records include details such as previous Fast Track purchases, scheduled arrival times, terminal usage, amounts paid, purchase references, total spending, and the purpose of trips. The attackers claim that they obtained access using airport-specific Iterable API credentials exposed in client-side JavaScript.

FulcrumSec, known for targeting sensitive corporate data and threatening to publish it rather than encrypting victims’ systems, has shared samples of the allegedly stolen data with cybersecurity news site BleepingComputer. While these samples appeared authentic, their source or extent of access, as well as the overall size of the dataset, could not be independently verified.

The affected information goes beyond what was initially disclosed by MAG on August 27. The company had stated that customer data related to car park bookings and in-airport Wi-Fi registrations were stolen. However, the sampled records contained more detailed customer profiles, including purchase and booking references, airport and product selections, prices, discounts, booking status, parking dates and times, historical spending, IP addresses, approximate locations, device information, and customer-engagement data.

MAG has confirmed that affected customers with upcoming bookings have been contacted. However, the company declined to address FulcrumSec’s claims concerning the 86 GB dataset, exposed credentials, and future-travel data. The attackers reportedly demanded a monetary ransom, which MAG refused to pay.

The scope of this breach is significant, highlighting the importance of robust cybersecurity measures for organizations handling sensitive customer information. As more details emerge, it becomes clear that the breach goes beyond mere email addresses, phone numbers, vehicle registrations, and postcodes. This incident serves as a stark reminder of the risks associated with inadequate data protection and the devastating consequences that can follow.

For businesses and individuals alike, this breach offers a sobering lesson in the importance of safeguarding sensitive information. It is crucial to stay vigilant and proactive when it comes to cybersecurity, implementing robust measures to protect against similar attacks in the future.


Source: Bleeping Computer — 2026-08-30