Security teams are investigating a significant digital breach after cybercriminals breached systems managed by Manchester Airports Group, compromising personal information linked to roughly 8.7 million passengers across three major UK travel hubs.

The attack targeted customer databases associated with Manchester Airport, London Stansted, and East Midlands Airport.

According to officials, the unauthorised intrusion took place over the weekend, though it was quickly contained once detected. The vast majority of the breached records stemmed from traveller sign-ups for terminal Wi-Fi networks. Additional compromised data was linked to auxiliary services, including, advance parking reservations, executive lounge passes and fast-track security access bookings.

While names, contact details, postcodes, and license plate numbers were accessed, officials emphasised that no payment information, credit card details, or banking records were stored on the compromised system.

Aviation authorities confirmed that physical transit networks, passenger screening, and tarmac operations remained completely unhindered throughout the breach.

“At no point has passenger safety or aviation security been compromised,” MAG stated in an official release, adding that customer parking and terminal operations are functioning normally.

Cybersecurity experts warn that while financial theft was avoided, the stolen contact details could be leveraged by bad actors for targeted phishing schemes and scam communications.

The breach illustrates how non-critical, third-party infrastructure directly threatens critical sectors, making it a case study for the core cybersecurity, travel, and national security topics at Identity Week America 2026. The conference focuses on securing civilian, defence, and travel ecosystems by addressing several key areas highlighted by the MAG incident.