A sophisticated ransomware attack disrupted operations at several major European airports over the weekend, forcing airlines to process thousands of passengers manually and causing significant flight delays and cancellations.
## Attack Details and Impact
The cyberattack, which began Friday night, targeted Collins Aerospace, an American company that provides critical check-in and boarding systems to multiple European airports. The hackers specifically compromised the MUSE (Multi-User System Environment) system, a shared platform that allows airlines to efficiently manage check-in desks and boarding gates without maintaining dedicated infrastructure.
Affected airports included:
– **Heathrow Airport** (London)
– **Brussels Airport** (Belgium)
– **Brandenburg Airport** (Berlin)
– **Cork and Dublin airports** (Ireland, with minor impact)
The disruption was severe, with over 100 flights delayed or cancelled and thousands of passengers requiring manual processing. Brussels Airport confirmed that disruptions continued into Monday, advising travelers to verify flight status before arriving at the terminal.
## Official Response and Investigation
The European Union Agency for Cybersecurity (ENISA) officially confirmed the incident as a ransomware attack in a statement to The Guardian. The attack’s scope and impact on critical aviation infrastructure has prompted a coordinated response from multiple agencies.
The UK’s National Cyber Security Centre (NCSC) is actively involved in the investigation, working alongside Collins Aerospace, affected airports, the Department for Transport, and law enforcement agencies. A spokesperson emphasized their commitment to “fully understand the impact of the incident.”
## Recovery Efforts and Security Recommendations
Collins Aerospace has been working around the clock to restore system functionality at all impacted airports. The company’s efforts focus on bringing the MUSE system back online while ensuring security vulnerabilities are addressed.
In response to this incident, cybersecurity agencies are urging organizations to strengthen their security posture. The NCSC specifically recommends that all organizations utilize available free guidance, services, and tools to reduce their vulnerability to similar cyberattacks.
This attack highlights the critical importance of cybersecurity in aviation infrastructure and the potential for widespread disruption when shared systems become compromised. As airports increasingly rely on interconnected digital systems, robust cybersecurity measures become essential for maintaining operational continuity and passenger safety.
