In what may very well be termed as the largest cyberattack in India, the data of greater than 45 lakh customers of worldwide airlines together with Air India have been compromised. This contains private data corresponding to credit card details and passport data.
The data breach carries the data between August 2011 and February 2021.
Besides Air India, world airlines like Malaysia Airlines, Finnair, Singapore Airlines, Lufthansa, and Cathay Pacific’s data have additionally been stolen.
Air India tweeted to tell its affected passengers that its SITA PSS server, which is chargeable for storing and processing private data of fliers, was topic to a cybersecurity assault. The data breach concerned private data registered between August 26, 2011 and February 20, 2021. The data contains delicate data corresponding to identify, date of beginning, contact data, passport details, ticket data, Star Alliance and Air India frequent flyer data in addition to credit card data had been leaked.
As for credit card details, CVV or CVC numbers weren’t saved within the affected server, Air India clarified.
“While we had received the first notification in this regard from our data processor on February 25, 2021, we would like to clarify that the identity of the affected data subjects was only provided to us by our data processor on March 25, 2021, and April 5, 2021. The present communication is an effort to apprise you of accurate state of facts as on date and to supplement our general announcement of March 19, 2021, initially made via our website,” Air India mentioned in an electronic mail to passengers.
The nationwide service had additional revealed that no unauthorised exercise contained in the PSS infrastructure was detected and urged its passengers to shortly change their passwords wherever relevant to make sure the protection of their private data.
#mute