FulcrumSec Claims Data Theft from Manchester Airports Group
Threat actor alleges exfiltration of 86 GB of customer and operational data

Key Takeaways
- FulcrumSec claims theft of 86 GB of data from Manchester Airports Group.
- BleepingComputer validation confirms at least one traveller's record is authentic.
- Exposed data includes customer, booking, and travel information beyond initial MAG disclosures.
- The incident reflects a broader trend of ransomware and data extortion targeting the aviation sector.
- Affected individuals may face privacy risks related to exposed travel and booking details.
Quick answers
- What happened?
- Threat actor FulcrumSec claims to have stolen approximately 86 gigabytes of data from Manchester Airports Group, including customer, booking, and travel information. BleepingComputer validated at least one traveller's record, confirming the authenticity of the exposed data beyond initial disclosures by the organization.
- What should defenders do?
- Manchester Airports Group and similar organizations should immediately initiate forensic investigations to determine the scope and method of exfiltration. Affected systems should be isolated and secured. Transparent communication with impacted individuals is recommended to mitigate reputational and privacy risks. Enhanced monitoring for credential misuse and fraud stemming from exposed booking and travel data is advised. Implementation of strong access controls and encryption for sensitive passenger data is recommended.
According to reporting by BleepingComputer, threat actor FulcrumSec claims responsibility for a data breach targeting Manchester Airports Group. The actor alleges the exfiltration of approximately 86 GB of data containing detailed customer, booking, and travel information. BleepingComputer's validation of at least one traveller's record suggests the exposed data is authentic and contains operational details not initially disclosed by Manchester Airports Group. The incident highlights the ongoing risk of ransomware and data extortion campaigns targeting critical infrastructure and transportation sectors. Manchester Airports Group has not issued a detailed public statement regarding the scope or verification of the claims at the time of reporting. The breach underscores the need for robust data protection and incident response capabilities within airport and aviation-related organizations.
Security Details
Threat actor FulcrumSec claims exfiltration of approximately 86 GB of data from Manchester Airports Group systems. The compromised data reportedly includes customer, booking, and travel information. BleepingComputer's validation of traveller records confirms the authenticity of the exposed data, indicating that the breach extends beyond initial organizational disclosures. The method of initial access and specific vulnerability exploited have not been detailed in available reporting, which focuses on the data extortion claim.
Mitigation
Manchester Airports Group and similar organizations should immediately initiate forensic investigations to determine the scope and method of exfiltration. Affected systems should be isolated and secured. Transparent communication with impacted individuals is recommended to mitigate reputational and privacy risks. Enhanced monitoring for credential misuse and fraud stemming from exposed booking and travel data is advised. Implementation of strong access controls and encryption for sensitive passenger data is recommended.
Sources
BleepingComputer
FulcrumSec claims Manchester Airports hack, theft of 86 GB of data
Aug 30, 2026 · 15:00
Original link
Related Security News

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Times Car, a Japanese car-sharing service, has confirmed a data breach compromising approximately 6.6 million user accounts. The incident was disclosed late last week, with the exact attack vector and nature of exposed personal information yet to be fully specified. Authorities and the company are reportedly investigating the breach.

French Tax Administration Data Breach Exposed Hundreds of Thousands of Records via Stolen Staff Credentials
An unauthorized access incident at France's Direction Générale des Finances Publiques (DGPP) compromised tax data belonging to hundreds of thousands of taxpayers and businesses between June and July 2026. According to a report published by France's national cybersecurity agency ANSSI on 29 September 2026, the attacker used stolen staff passwords to gain entry. The agency stated the attack was 'not sophisticated' and went undetected for seven weeks due to weak security controls. ANSSI noted that neither the tax administration nor the agency itself observed data exfiltration, though the breach resulted in unauthorized access to sensitive fiscal information.



