Manchester Airports Group, the largest airport operator in the UK, disclosed that hackers breached its systems and stole customer data tied to Wi-Fi sign-ups at Manchester, Stansted, and East Midlands airports. The stolen information also relates to car park, lounge, and Fast Track bookings, and includes email addresses, phone numbers, vehicle registration numbers, and postcodes. The company said the intruder did not access payment details, and the attack had no operational impact on airport services. Parking operations continue to run normally, and the firm has temporarily suspended its online Manage My Booking service, directing travelers to use a phone line instead.

MAG owns the three airports, which together handle more than 66 million passengers annually, and employs 40,000 people with yearly revenue of 1.5 billion pounds. Upon discovering the intrusion, the company says it moved quickly to contain the breach, restricting access to affected systems, bringing in external experts, and notifying law enforcement. Potentially exposed customers are being advised to stay alert for suspicious communications and to avoid clicking links in emails or text messages. MAG stressed that it will never ask customers for payment card information, banking details, or passwords, and urged anyone receiving such requests to reject them and report them to authorities.

The company has contacted impacted customers directly but has not disclosed the number of affected individuals. Local media cited private MAG statements suggesting data from up to 8.9 million travelers may have been exposed, though that figure has not been independently confirmed. No ransomware or data extortion group has publicly claimed responsibility for the attack as of this writing. MAG also encouraged customers to follow post-breach recommendations from the UK's National Cyber Security Centre to stay safe.

For US travelers, the breach underscores how airport-affiliated services, such as Wi-Fi logins and parking bookings, can become vectors for data theft even when flight operations remain unaffected. While the stolen data does not include financial details, the combination of email addresses, phone numbers, and vehicle registration numbers could be used in targeted phishing campaigns. The incident also highlights the risk of reusing passwords across accounts, as exposed contact details can enable credential-stuffing attempts elsewhere. MAG's decision to suspend an online booking service while keeping phone lines open reflects a common mitigation strategy during active investigations.

The full scope of the breach remains unclear, as the company has not stated how many customers were impacted. The lack of a public claim by known cybercriminal groups suggests the attack may not follow a typical extortion model, or that the investigation is still in its early stages. MAG's assurances that operations are unaffected provide some reassurance, but the disclosure of personal data for millions of potential travelers raises ongoing privacy concerns. The company is likely to face scrutiny over how the intrusion occurred and what security measures were in place at the time of the breach.

More cybersecurity news from TechManNews.