Chinese hackers attack United Airlines' security

The same group that attacked the US Office of Personnel Management (OPM) is thought to be responsible

Airport

The group of Chinese hackers that attacked the US Office of Personnel Management (OPM) and medical insurer Anthem has now breached United Airlines' security, it is reported.

The hack happened in either May or early June according to Bloomberg, which spoke to people familiar with the matter, and involved infiltrating the airline's systems, possibly accessing information about the movements and personal details of passengers, including where they were flying from and destination.

If the hacks were all carried out by the same hacking group as investigators suspect, information could be compared to the details stolen from the government's personnel department and Anthem to create detailed profiles of citizens.

Additionally, United Airlines is the service used most by the US government, making it even more likely hackers could put two and two together with the banks of data they now hold.

"You're suspicious of some guy; you happen to notice that he flew to Papua New Guinea on June 23 and now you can see that the Americans have flown there on June 22 or 23," James Lewis, a senior fellow in cybersecurity at the Center for Strategic and International Studies in Washington. "If you're China, you're looking for those things that will give you a better picture of what the other side is up to."

A couple of weeks ago, United Airlines became the first US airline to offer a bug bounty programme, offering security researchers air miles if they uncover bugs or hacks in the company's systems. At the time, it has paid out twice, awarding those who discovered the security holes a million airmiles each.

It's not just security flaws and hacks that can cause great disruption to an airline like United. Earlier in July, flights were grounded by a computer glitch and in June, "automation issues" meant flights were unable to take off.

Featured Resources

How to scale your organisation in the cloud

How to overcome common scaling challenges and choose the right scalable cloud service

Download now

The people factor: A critical ingredient for intelligent communications

How to improve communication within your business

Download now

Future of video conferencing

Optimising video conferencing features to achieve business goals

Download now

Improving cyber security for remote working

13 recommendations for security from any location

Download now

Recommended

IT security awareness and training firm KnowBe4 acquires MediaPRO
Acquisition

IT security awareness and training firm KnowBe4 acquires MediaPRO

3 Mar 2021
High-risk email security threats increased by 32% last year
phishing

High-risk email security threats increased by 32% last year

3 Mar 2021
The top 12 password-cracking techniques used by hackers
Security

The top 12 password-cracking techniques used by hackers

3 Mar 2021
Microsoft Exchange targeted by China-linked hackers
zero-day exploit

Microsoft Exchange targeted by China-linked hackers

3 Mar 2021

Most Popular

Star Alliance passenger data stolen in SITA data breach
data breaches

Star Alliance passenger data stolen in SITA data breach

5 Mar 2021
I went shopping at Amazon’s till-less supermarket so that you don’t have to
automation

I went shopping at Amazon’s till-less supermarket so that you don’t have to

5 Mar 2021
How to find RAM speed, size and type
Laptops

How to find RAM speed, size and type

26 Feb 2021