All stories Airport Hack Exposes Vehicle and Parking Data of Millions

03 September 2026

Airport Hack Exposes Vehicle and Parking Data of Millions

A cyber attack affecting Manchester, London Stansted and East Midlands airports has resulted in the personal data of nearly nine million people being published online. The stolen information reportedly includes vehicle registrations, postcodes, contact details and car parking information, with affected customers warned to remain alert for scams.

UK Airport Hack Raises Warning for Drivers Over Parking Data

Airport Hack Exposes Parking and Vehicle Data of Millions of UK Customers Criminal hackers have published personal data belonging to nearly nine million people after breaching three UK airports, raising concerns about scams and the misuse of vehicle and parking information. The breach affected Manchester, London Stansted and East Midlands airports, which are operated by Manchester Airports Group (MAG). Vehicle and parking details among stolen data The stolen information reportedly includes contact details, postcodes and vehicle registration numbers, as well as information connected to airport Wi-Fi and car parking. Data breach experts who analysed the material said it also contained email addresses, phone numbers, addresses, licence plate numbers, purchasing history and browsing device information. The hackers reportedly demanded a ransom from MAG, but the company did not pay the amount requested. The criminal group has since made the stolen database available to other criminals and scammers, increasing concerns about possible secondary attacks against affected customers. MAG said it had taken measures to protect customers and had contacted those affected, including people with upcoming bookings. Airport parking customers warned For motorists, the inclusion of vehicle registration and car parking information is particularly significant because such details can potentially be used by scammers to make fraudulent messages appear genuine. Cyber-security expert Kevin Beaumont warned affected people to remain alert for scams, particularly where criminals may already know details such as telephone numbers and vehicle registration numbers. He also highlighted concerns over information showing historical locations and planned future travel, which could reveal details about people's movements. MAG said passengers' physical safety at its airports had not been put at risk as a result of the cyber attack. The company is working with authorities and specialist advisers following the breach. The National Crime Agency has previously advised victims of extortion attacks not to pay criminal ransoms, as payments can contribute to the wider criminal hacking ecosystem. What should affected drivers do? Drivers who have used parking facilities at the affected airports should be particularly cautious about unexpected emails, text messages or phone calls referring to airport bookings, parking or vehicle details. The Information Commissioner's Office advises people affected by a personal data breach to monitor bank statements and credit reports for unusual activity and remain alert to suspicious communications. People should also report stolen documents, such as driving licences, passports or credit cards, to the relevant issuer. Using strong passwords and multi-factor authentication on online accounts can provide additional protection if personal information has been exposed. The publication of the stolen database means affected airport customers could continue to face scam attempts even after the original cyber attack has ended. For UK drivers who regularly use airport parking, the incident is another reminder of how vehicle registration and parking-related information can become part of a wider personal-data security risk when customer databases are breached.

Share this story

More stories

← Back to all stories