Scope of the Breach
MAG, the operator behind Manchester, London Stansted, and East Midlands airports, reported a cyber incident that compromised personal details of around 8.7 million individuals. The breach exposed email addresses, phone numbers, vehicle registration plates, and postal codes, largely from bookings for parking, lounges, fast-track services, and airport WiFi registrations.[S1][S3][S6]
MAG stated that the majority of the accessed data was limited to email addresses from WiFi sign-ups, while more detailed data came from other services. The company emphasized that no bank or payment details were held in the compromised system, and passenger safety and aviation security were never at risk.[S1][S3]
Response and Customer Guidance
MAG became aware of the incident on Tuesday, August 25, though it is believed to have occurred a few days earlier. The group quickly contained the risk, notified affected customers via email, and is working with specialist advisors and relevant authorities. The identity of the hackers is known, and authorities have been informed.[S1][S3][S4][S5]
The public is advised to stay alert for unsolicited emails, texts, or calls and to refrain from opening attachments from unknown senders. MAG emphasized that it would never reach out unexpectedly to ask for payment or banking details. Existing reservations remain unaffected, and airport operations continue without interruption.[S1][S3][S6]






