Delta Probes In-Flight Wi-Fi Breach After Defcon Hackers Phish Passengers

Delta Airlines is investigating an in-flight Wi-Fi security breach after hackers at the DEF CON conference allegedly phished passengers. The incident involved an 'evil twin' Wi-Fi network that compromised user credentials.

DAL is investigating a rogue Wi-Fi network that appeared aboard Flight 591, a Boeing 757 flying from Las Vegas to Atlanta on Monday, shortly after the close of DEF CON 34. A passenger is alleged to have used a Wi-Fi Pineapple, a pocket penetration-testing router, to broadcast a network named to imitate Delta's own service, serve a phishing page and harvest Google credentials.

The technique is a classic evil twin attack: a rogue access point clones the name and settings of a trusted network so that devices and passengers connect to it by mistake. Cabin crew alerted corporate security roughly an hour after departure, and the airline disabled legitimate passenger Wi-Fi for about 30 minutes while the rogue network was identified. The FBI met the aircraft at the gate in Atlanta, questioned the suspects and took their devices.

Delta has commented publicly, saying an unauthorized network was briefly active, that no Delta systems were compromised and that flight safety and aircraft operating systems were never affected. That scoping matters for how the incident should be read: the exposure runs to individual passenger credentials entered into a phishing page, not to airline infrastructure or a customer database.

What to watch: whether federal charges follow, whether the incident prompts changes to how in-flight Wi-Fi networks authenticate themselves to passenger devices, and whether other carriers disclose similar attempts. The direct financial exposure to Delta looks limited given the airline's stated findings, and shares traded near $89 on the day, down about 1%, with no move attributable to the incident.

Related Stocks

Powered by SentiSense - Intelligent Market Analysis