A significant EgyptAir cyberattack has allegedly targeted the national flag carrier of Egypt, with a threat actor advertising stolen data on the dark web. The individual, operating under the pseudonym "quellostanco," posted on a cybercrime forum, claiming to possess a full database extracted from the airline's systems.Â
While the breach is currently pending verification, the detailed nature of the advertised dataset suggests a potentially severe compromise of internal networks.
The scope of this reported EgyptAir data breach appears extensive. According to the forum post, the compromised dataset contains approximately 104,000 records derived primarily from HR and recruitment systems.Â
The exposed information allegedly includes:
If valid, the exposure of cleartext passwords indicates a failure in basic credential management protocols. This incident underscores the growing vulnerability of aviation cybersecurity infrastructure, as the airline industry relies heavily on interconnected digital systems for recruitment and operations.Â
In October 2025, the Cl0p Ransomware group claimed an American Airlines breach, and Scattered Spider targeted the Vietnam Airlines CRM to steal government records.Â
A report last month highlighted that dozens of global companies were breached through infostealer credentials, including those inaviation, defense, and engineering.Â