The FBI has warned that the cybercriminal group Scattered Spider is targeting the aviation industry in the US and Canada by deceiving IT help desks into granting them access to sensitive data.
Scattered Spider gained attention in 2023 for hacking MGM Resorts and Caesars Entertainment, using social engineering techniques to bypass multi-factor authentication and gain unauthorized access.
The group focuses on large corporations and third-party IT providers within the airline ecosystem, aiming to steal sensitive data for extortion and deploying ransomware.
Cybersecurity experts urge the aviation industry to tighten up help desk identity verification processes to prevent unauthorized access and social engineering attacks by groups like Scattered Spider.