Manchester Airports Group Data Breach Exposes 8.7 Million Records
A major cybersecurity breach at Manchester Airports Group has exposed 8.7 million customer email addresses and booking records across three UK airports.

Image generated by AI
Manchester Airports Group has confirmed a cybersecurity breach exposing approximately 8.7 million customer records across Manchester, London Stansted, and East Midlands airports.
The Local Trend: Increasing Cybersecurity Pressure on Aviation
A cyber intrusion targeting Manchester Airports Group (MAG) has resulted in the exposure of passenger contact details and booking information. The breach, detected by internal computer systems on August 25, 2026, and publicly confirmed on August 27, 2026, targeted customer-facing services rather than operational flight platforms.
The compromised data is linked to passenger services used before departure, including airport parking reservations, premium lounges, Fast Track security options, and terminal Wi-Fi registrations. While the majority of the 8.7 million exposed records were limited to email addresses, some entries included telephone numbers, vehicle registrations, and postcodes. MAG confirmed that payment card and banking details were not stored within the affected systems and were not accessed.
Ransom Rejected and Government Coordination
The airport operator reported that it received a ransom demand from the attackers but rejected it. MAG has restricted access to the affected platforms and is coordinating with cybersecurity consultants and government bodies, including the UK's National Cyber Security Centre (NCSC), to investigate the intrusion method.
MAG is one of the UK's largest airport operators, handling over 66 million passengers during the financial year ending March 2026. This includes 32.3 million passengers at Manchester Airport, over 30 million at London Stansted, and 4 million at East Midlands, representing 20% of all UK air passenger traffic across 284 destinations. The incident highlights the growing digital risks facing the aviation sector as terminals rely more on online passenger bookings.
Manchester Airports Group Passenger Traffic and System Status (2026)
| Airport / Operational Parameter | Passenger Volume (FY Ending March 2026) | Security Audit & Operational Status |
|---|---|---|
| Manchester Airport | 32.3 Million passengers (record) | Flights and terminal security unaffected |
| London Stansted Airport | 30.0 Million+ passengers (first time) | Flights and terminal security unaffected |
| East Midlands Airport | ~4.0 Million passengers | Flights and terminal security unaffected |
| Total Group Traffic | 66.0 Million+ passengers | Represents around 20% of UK air travel |
| Compromised Records | 8.7 Million customer records | Detected Aug 25, 2026 / Confirmed Aug 27, 2026 |
| Exposed Fields | Emails, phone numbers, postcodes, plates | No credit card or banking details accessed |
| Manage My Booking Portal | Paused temporarily for audits | Restored after system vulnerability reviews |
Phishing Threats and Operational Continuity
MAG confirmed that airport flight schedules, airport safety procedures, and aviation security remained unaffected, with flights operating normally. Existing parking, lounge, and Fast Track reservations remain valid. However, the airport operator temporarily paused its online "Manage My Booking" portal as a security precaution, setting up support options for passengers traveling within 72 hours.
Cybersecurity experts warn that the stolen contact details could be used to launch phishing campaigns. Criminals may send fake emails or text messages claiming to come from airports or travel companies, attempting to collect passwords or financial information. Travelers are advised to check unexpected communications and verify sender addresses carefully.
Destination Specialist Local Insider Tips
To help travelers protect their digital security, local specialists recommend the following insider tips:
- Beware of Phishing Emails and Texts: Be cautious of unsolicited emails or texts asking you to update payment details or verify bookings; MAG will never ask for banking details unexpectedly.
- Check Your Bookings Directly: Since the "Manage My Booking" service was temporarily paused, passengers traveling within 72 hours should contact customer support directly to confirm reservations.
- Use Multi-Factor Authentication (MFA): Update the passwords for any travel accounts associated with your email and enable MFA where available.
- Verify Sender Domain Names: Double-check the sender address of any airport parking or lounge notification to ensure it matches the official airport domain.
- Support Community Security Efforts: Report any suspicious airport-related communications directly to the NCSC's phishing reporting service.
Future Outlook
The cyber intrusion adds to recent security incidents in the global aviation sector, including a 2025 cyberattack on passenger processing systems that affected several European hubs. As airports continue to integrate digital services, protecting passenger data has become a critical priority alongside physical security and operational reliability.
Related Travel Guides
Disclaimer
This article is for informational and educational purposes only. It does not constitute legal, financial, or professional advice. While we strive to provide accurate and up-to-date information, travel policies, regulations, and conditions change rapidly. Always verify information with official sources before making travel decisions. Nomad Lawyer makes no representations about the accuracy, reliability, completeness, or suitability of the information provided. Readers should consult qualified professionals for advice specific to their circumstances. The views expressed in this article are those of the author and do not necessarily reflect the views of Nomad Lawyer.

Preeti Gunjan
Contributor & Community Manager
A passionate traveller and community builder. Preeti helps grow the Nomad Lawyer community, fostering engagement and bringing the reader experience to life.
Learn more about our team →