PrivacySignal
Breach

Criminals publish data of 8.7m people after airports hack

BBC — Tech · · International · Data Breaches

Criminals have published personal data belonging to 8.7 million people following a hack on a company that operates Manchester, Stansted, and East Midlands airports. The breach occurred last month and the stolen data has now been released publicly.

Why this matters: When airport operators get breached, the exposure goes well beyond email addresses. Travel records, passport details, and booking data can sit in these systems. Eight point seven million people did not choose to hand their information to criminals, but it is out there now. The company runs three major airports, so the pool of affected people is wide and largely unaware. Public release of the data makes this worse than a quiet breach — it means anyone can use it. Passengers deserve to know exactly what was taken and what protections, if any, were in place beforehand.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
BleepingComputer · · International

Ransomware protection for MSPs: A 6-point checklist for faster recovery

Ransomware resilience requires more than backups or endpoint detection alone. Acronis outlines six capabilities MSPs should test across client environments, from reducing exposure and detecting attacks to preserving recovery points and restoring operations quickly. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Oncology Firm Novocure Announces Cyberattack and Data Breach

Novocure, a medical technology company focused on oncology, has confirmed a cyberattack that exposed data belonging to patients and employees. The company has not publicly detailed the scope of the breach or the type of information compromised.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
HIPAA Journal · · US Federal

Highland Oncology Group Settles Litigation Stemming From 2025 Ransomware Attack

Highland Oncology Group, a cancer care practice based in Arkansas, has reached a settlement in litigation connected to a ransomware attack that occurred in 2025. The practice serves patients across Arkansas, Missouri, and Oklahoma.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
Microsoft Threat Intelligence · · International

Counterfeit installers to system compromise: Tracking a deceptive software download campaign

Attackers are running an active campaign that mimics legitimate software vendors, using fake download pages and tampered installer files to deliver malware. Microsoft Defender Experts documented the attack methods and published detection guidance and indicators of compromise to help organizations respond.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#surveillance#security Read original →
Breach
The Record · · International

China's 'Fire Ant' campaign used compromised Cisco routers as platform for more attacks

A hacking campaign attributed to Chinese actors, called Fire Ant, used compromised Cisco routers as a launchpad for further network intrusions, according to security researchers. Rather than simply stealing data, the operation undermined the foundational infrastructure that networks rely on to establish trust.

Who should care: Cybersecurity · Privacy officers · Administrators