Particle.news

Download on the App Store

Scattered Spider Targets North American Airlines and Transport Firms

The FBI has issued warnings urging airlines to strengthen help desk identity checks in response to recent intrusions

Overview

  • The FBI confirmed on June 27–28 that the Scattered Spider hacking collective is expanding its campaign to include airlines and transportation companies
  • Google’s Mandiant and Palo Alto Networks’ Unit 42 have observed multiple intrusions in the aviation and transport sectors matching Scattered Spider’s social engineering tactics
  • WestJet’s June 12 breach and Hawaiian Airlines’ June 23 incident are both under federal and private investigation without any impact on flight safety or schedules
  • American Airlines is grappling with an unexplained IT outage that authorities are examining for possible links to the group’s sector-by-sector attacks
  • Industry alerts recommend that aviation firms tighten help desk identity verification and adopt phishing-resistant multi-factor authentication to block future breaches