The Federal Bureau of Investigation (FBI) has sounded the alarm about a notable shift in the focus of a notorious hacker group, Scattered Spider, as it extends its cyberattack efforts towards the airline sector. In a statement released on Friday, federal officials highlighted the group's intensified interest in targeting airlines, underscoring a significant threat to the industry's cybersecurity landscape.
Scattered Spider, also known by the alias Øktapus, has gained infamy for its cunning use of social engineering tactics, often masquerading as employees or contractors to mislead IT help desks. The group's techniques are particularly concerning as they frequently include strategies to circumvent multi-factor authentication (MFA), such as convincing help desk personnel to register unauthorized MFA devices on compromised accounts.
The FBI's alert warns that Scattered Spider's activities pose a substantial risk not only to airlines but also to the broader aviation ecosystem, which encompasses vendors and contractors. Once the hackers gain access to a system, they proceed to steal sensitive data for the purpose of extortion and frequently instigate ransomware attacks. This modus operandi was evident in the 2023 cyberattack on MGM Resorts, where Scattered Spider forced the casino giant to cease its computer operations for 10 days. During this attack, reports surfaced that MGM Resorts paid $15 million out of a $30 million ransom demand.
Federal agents are proactively engaging with aviation and industry partners to counter these cyber threats and provide support to victims. The recent advisory from the FBI follows a string of suspicious activities, including an incident reported by insurance company Aflac, which encountered unauthorized access in its U.S. network. The compromised files potentially included a wide range of sensitive information, from health records to Social Security numbers.
Cyberattacks on corporations are not a new phenomenon; however, breaches that target retail businesses have garnered heightened public attention due to the direct impact on consumers. An example of this occurred last month when Victoria's Secret had to shut down its U.S. shopping site for nearly four days following a security breach, which also affected some in-store services and delayed the company's earnings report.
As cybercriminal activities continue to evolve, it becomes increasingly vital for companies to fortify their cyber defenses and for federal agencies like the FBI to remain vigilant and responsive. The growing sophistication of hacking groups like Scattered Spider, with their ability to exploit human vulnerabilities and technical safeguards, represents a significant challenge to cybersecurity professionals and the industries they strive to protect.