ransomware
Credible
Egypt (EG)
aviation
EgyptAir listed by the FunkSec ransomware group
EgyptAir
CompanyEgyptAir
CountryEgypt (EG)
Sectoraviation
Breach date2024-12-24
People affectedNot disclosed
Ransomware groupfunksec
Data typespassenger data, booking records, corporate information
Overview
The FunkSec ransomware group has listed EgyptAir, the flag carrier airline of Egypt, on its leak site. The airline operates scheduled passenger and freight services to destinations in the Middle East, Europe, Africa and Asia. The listing appeared on 24 December 2024. At the time of analysis, the group's leak page was not reachable.
What was published
The group claims to have exfiltrated data from the airline. The archive is expected to include passenger records, booking data and corporate information.
Risks for affected individuals
- Passenger personal data may be exposed.
- Booking records could enable fraud.
- Employees' information may be included.
What remains unknown
- The volume of data exfiltrated.
- The exact contents of the leak.
- Whether the data has been published elsewhere.
What affected people should do
Passengers should monitor their accounts and be cautious of unsolicited communications. EgyptAir should notify affected passengers and staff, review its systems, and coordinate with aviation authorities on the response.
Sources
- http://7ixfdvqb4eaju5lzj4gg76kwlrxg4ugqpuog5oqkkmgfyn33h527oyyd.onion/sell21.html