FulcrumSec claims 86GB theft from Manchester Airports Group

Extortion group FulcrumSec claims to have taken about 86GB of customer data from Manchester Airports Group, including contact details linked to car park, lounge and Fast Track bookings.
Extortion group FulcrumSec has claimed responsibility for a cyber incident affecting Manchester Airports Group (MAG), asserting it exfiltrated roughly 86 gigabytes of data. MAG disclosed the security incident on August 27 and confirmed customer contact and travel-related information was accessed at its three airports: Manchester, London Stansted and East Midlands.
MAG confirmed the compromised information includes email addresses, phone numbers, vehicle registrations and postcodes. The operator reported no payment card data was accessed and said passenger safety and aviation security were not affected. Airport operations were not disrupted and customer parking services continue to operate normally.
The airport group has not publicly confirmed the total number of people affected. Initial estimates put the number of impacted customers at about 8.7 million. MAG indicated the data was taken from “a database hosted by a third party” and acknowledged it received a ransom demand, without disclosing details of the request.
FulcrumSec posted claims over the weekend that it had stolen approximately 86GB of MAG data, including detailed booking and travel information, and said it planned to publish the files. The group first appeared in 2025 and has publicly claimed responsibility for other incidents involving organisations such as Novo Nordisk and LexisNexis.
MAG released a statement: “We immediately contained the risk and have been working with specialist advisors and taking appropriate steps to protect our customers and systems. We have informed and are working with the relevant authorities.” The operator added investigations are ongoing and customers whose information was affected are being notified.








