DEF CON crowd suspected in fake-hotspot attack on Delta flight

Passengers from the DEF CON security conference allegedly created a fake Wi-Fi hotspot on a Delta flight to harvest passenger credentials through an "evil twin" attack, demonstrating a real-world vulnerability in aircraft cabin connectivity systems. This incident highlights critical gaps in onboard network security and the need for stronger authentication protocols, while also raising concerns about the physical security of critical transportation infrastructure against sophisticated threat actors. IT leaders must reassess their organization's wireless security posture and consider whether similar vulnerabilities exist in their own networks, particularly around guest access and credential protection.

Cyrus FarivarArs Technica2 min read
Read full article
DEF CON crowd suspected in fake-hotspot attack on Delta flight
On Monday, passengers aboard Delta flight 591 going from Las Vegas to Atlanta allegedly spoofed the onboard Wi-Fi, raising the attention of federal law enforcement. The incident came one day after the DEF CON security conference concluded in Las Vegas, and was first described on social media accounts that follow publicly available air-to-ground messages, known as ACARS. According to the “ACARS Drama” account, a message was sent by pilots from the plane stated: “NO INFO AS OF NOW WE HAVE A BUNCH OF PAX THAT WERE AT A CYBER CONFERENCE IN LAS THEY WERE ABLE TO JAM OUR WIFI AND BROADCAST THEIR SIGNAL.”Read full article Comments