Manchester Airports Group Breach Exposes Data On 8.7 Million Travellers
Manchester Airports Group disclosed that personal data linked to about 8.7 million people was stolen from systems tied to airport parking, lounge, Fast Track and Wi-Fi services, while core airport operations continued.

A data breach at Manchester Airports Group exposed personal data linked to about 8.7 million people who used its airport services, Computer Weekly reported, putting customers at risk of follow-on fraud even though bank and payment details were not in the breached systems.
MAG runs Manchester, London Stansted and East Midlands airports.
The affected records relate to parking, lounge and Fast Track bookings, plus airport Wi-Fi sign-ins, and include email addresses, phone numbers, postcodes and vehicle registration plates.
The stolen dataset therefore connects contact details with airport-specific activity rather than payment credentials, narrowing the immediate exposure but sharpening the phishing risk.
The breach has not disrupted airport operations.
Upcoming bookings remain valid and affected services are operating normally, but the group's online Manage My Booking service was offline; travellers needing urgent changes to services due before Sunday, 30 August, were directed to contact MAG by phone.
The exposed data creates a targeted social-engineering risk rather than an immediate payment-card exposure.
MAG's customer message urged passengers to be cautious about unexpected emails, calls or SMS messages using airport booking, parking or travel details, and the group told customers it would not ask for payment details or passwords.
No public evidence at publication time tied the incident to a ransomware or cyber-extortion group.
That leaves the near-term security issue with the people whose travel and contact details could be assembled into convincing scam messages.
Huntress EMEA adviser Muhammad Yahya Patel warned that the combination of contact information, car registration plates and travel-related booking data gives criminals enough context to approach victims with a precise story.
Comparitech specialist Brian Higgins linked the breach to a broader shift in consumer expectations as AI makes data aggregation easier for criminals.
For affected passengers using those airports, the practical control is narrow: any message referencing airport bookings, parking or travel should be treated as suspicious if it asks for credentials, payment data or urgent account action.




















