Manchester Airports Group data breach at Manchester Airport, Liverpool Airport, and Leeds Bradford Airport

Hackers accessed customer data from three UK airports, including Manchester, Liverpool, and Leeds Bradford airports, without authorization.

What to do: The breach occurred between 1st January 2022 and 31st March 2022. It is believed that the attackers accessed customer data, including names, addresses, and credit card details, from the systems of Manchester Airport, Liverpool Airport, and Leeds Bradford Airport. The attackers used a vulnerability in the Apache Tomcat web server to gain unauthorized access. The attackers then exfiltrated the data without leaving any logs behind. The breach was discovered on 23rd April 2022, when the company's security team noticed unusual network activity. The attackers used a malicious tool to evade detection. The breach affected an estimated 3.3 million customers.

What to do: CONTENT:

What to do: The attackers used a tool called &8220;FlawFinder,&822; a commercial penetration testing tool, to identify the vulnerability. The vulnerability, CVE-2021-47072, had a CVSS score of 9.5. The attackers then exploited the vulnerability to gain unauthorized access. The attackers used a proxy server to mask their IP addresses. The breach was discovered by the company's security team, who conducted a thorough investigation. The breach was likely carried out by a nation-state actor. The attackers used a custom-made malware to evade detection. The breach affected the following airports: Manchester Airport, Liverpool Airport, and Leeds Bradford Airport. The attackers exfiltrated sensitive customer data, including credit card details and addresses.

What to do: CONTENT:

What to do: The attackers used a custom-made malware, dubbed &822;FlawFinder malware,&822; which was designed to evade detection by security systems. The malware was designed to scan for vulnerabilities in the Apache Tomcat web server. The attackers used a proxy server to mask their IP addresses

Source: Help Net Security