Hackers accessed data belonging to almost nine million customers during a cyber attack affecting East Midlands, Manchester and London Stansted airports, according to new details released about the incident.
Manchester Airports Group (MAG), which owns the three airports, confirmed on Thursday 27 August that an unauthorised third party had obtained customer information linked to airport parking, lounge and Fast Track bookings, as well as airport Wi-Fi registrations.
The BBC has since reported that the attackers accessed the details of almost nine million people and demanded a ransom for the return of the data.
MAG told the broadcaster that it refused to pay the ransom. The amount demanded has not been disclosed.
Information obtained during the attack included customers’ email addresses, telephone numbers, vehicle registration details and postcodes.
MAG said neither the company nor the affected system held customers’ bank or payment details.
There has been no disruption to airport operations, with passenger flights and parking services continuing as normal. MAG said passenger safety and aviation security had not been compromised.
The group said it took immediate action to secure the affected system and was working with cyber security specialists and the relevant authorities.
Customers contacted by East Midlands Airport were told that they did not need to take any specific action but should be cautious about unexpected emails, telephone calls or text messages claiming to be from the airport.
The airport said it would never contact customers unexpectedly to request payment or banking information.
MAG has apologised for any concern caused by the incident.


