Aerospace

Industry

Star Aviation Suffers Ransomware Attack

September 3, 2026

Goshen, Kentucky aviation supplier, Star Aviation, Inc. suffered a ransomware attack by the Storm ransomware group after the threat actors released some information earlier this month.
Star Aviation operates from Goshen, KY, and provides wire harness inspection and repair services for Boeing and Airbus aircraft, according to the company’s website.
Star Aviation is a small U.S. aerospace company whose business centers on repairing and testing engine wire harnesses and electronic wire interconnect systems used in commercial aircraft.

read more

Ransomware Attack at Aerospace Manufacturer, Extant Aerospace

August 23, 2025

Melbourne, Florida-based aerospace manufacturer, Extant Aerospace, suffered a ransomware attack in August last year and is now informing victims of the attack.
“On or around August 23, 2025, Extant detected ransomware activity affecting a portion of its network environment,” the company said in a notice to victims. “Upon discovery, Extant promptly took containment steps and notified federal law enforcement.”
Following its investigation, Extant (Symetrics Industries, LLC is the parent company) determined an unauthorized actor accessed certain systems and stole personal information of some current and former employees and other individuals.

read more

Cyberattack at MAG Aerospace

August 30, 2025

Fairfax, Virginia-based MAG Aerospace, which is a part of MAG DS Corp. suffered a cyberattack in August and personally identifiable information ended up stolen in the hack.
MAG Aerospace delivers highly technical services and engineering aerospace solutions around the world.
“On Aug 30, 2025, we were alerted to suspicious activity within our network,” the company said in a letter to victims. “In response, we launched an investigation with the help of third-party forensic experts. We also took measures to contain the incident, including quarantining assets, disabling affected accounts and domains, blocking access to our network, resetting passwords for affected accounts, and contacting law enforcement.”
Based on the company’s investigation to date, supported by external experts, it appears an attacker gained unauthorized access to stored personal information. The attack occurred between August 30, August 31.

read more

Cyberattack at Polish Space Agency (POLSA)

March 1, 2025

Poland’s Minister for Digitalization, Krzysztof Gawkowski, said a cyberattack was detected at the Polish Space Agency (POLSA) on March 1. Unauthorized access to the IT infrastructure was detected. The agency’s network was immediately disconnected from the internet to secure data, and intensive operational activities are underway to identify the perpetrator.

Sources inside the agency, who asked to remain anonymous, claimed the attack appears to be related to an internal email compromise and that staff are being told to use phones for communication instead. The incident is being analyzed, and cybersecurity services are investigating, amid concerns of potential destabilization attempts.

read more

Aircraft Engine Maker States it Suffered Data Breach in Feb. 2024

February 13, 2024

Aircraft engine maker, Continental Aerospace Technologies, Inc., suffered a cyberattack in February 2024 and it is just now {March 2025) letting victims of the attack know about what happened.

Mobile, Alabama-based Continental experienced a network disruption that affected its ability to access certain systems. In response, the company quickly initiated an investigation, and engaged third-party specialists to assist with understanding the nature and scope of the disruption. Continental Aerospace did not reveal the type of attack the company suffered and who was behind it.

read more

Polish Space Agency (POLSA) Takes Network Offline after Cyberattack

March 2, 2025

Polish cybersecurity services have detected unauthorized access to the Polish Space Agency’s (POLSA) IT infrastructure. The Minister for Digitalisation Krzysztof Gawkowski made the statement on Sunday. The agency confirmed to news agency PAP that a cybersecurity incident had occurred. The situation is being analyzed. In order to secure data, the POLSA network was immediately disconnected from the Internet.

read more

Aero Simulation, Flight Simulator Manufacturer Hit in Attack

February 17, 2023

Tampa, Florida-based Aero Simulation, Inc., (ASI) a maker of flight simulators for government and military units, suffered a cyberattack this past February that had been ongoing for about a year.
Aero Simulation designs and manufactures flight simulators and provides services for simulator modifications, upgrades, trainer moves, and site support services for customers, primarily in the Department of Defense (DoD), Department of Homeland Security (DHS) and foreign militaries.
“On or around February 27, 2024, ASI became aware of suspicious activity related to an employee email account,” the company said in a letter it sent out to victims in early October. “We immediately took steps to secure the email account, and launched an extensive investigation, with the assistance of third-party forensic specialists, to determine the nature and scope of the event.
“Through our investigation, we determined that an unknown actor gained access to one (1) employee email account and may have viewed and/or downloaded certain data within that account between an estimated period of February 2023 to May 2023.”

read more

Major Aircraft Component Manufacturer Scammed out of $50Million

January 15, 2016

Fischer Advanced Composite Components AG (FACC) was swindled a record 42 million euros (around $47 million) through a spear-phishing attack.

A fake email that impersonated its then CEO Walter Stephan, conned one of FACC’s financial department employee into wiring 50 million euros that was supposedly for one of the company’s acquisition projects.

FACC is a major designer and manufacturer of aircraft components and systems, with a client base that includes Boeing, Airbus, Rolls-Royce, Siemens SAS and Mitsubishi Heavy Industries.

read more

Data Security Incident at Sierra Lobo (SLI), a US Aerospace Engineering Firm

February 23, 2024

Despite patching a vulnerability in a remote access tool, Fremont, Ohio-based Sierra Lobo, Inc. (SLI), suffered a data security incident the company feels launched before they applied the mitigation.

“Based upon the forensic investigation, this cybersecurity incident commenced through the exploitation of a vulnerability in our remote access tool, ScreenConnect. Despite the immediate application of a patch addressing the identified vulnerability, subsequent investigations suggest that the system remained compromised, indicating that the initial breach occurred prior to the patch application.”

read more

Continental Aerospace Discloses Cyberattack

February 20, 2024

Continental Aerospace is under a cyberattack according to its website. The engine manufacturer recently posted a website banner announcing that it is experiencing an ongoing cyberattack which is impacting operations at its Mobile Alabama headquarters.

The important notice posted on the 20 February reads: “Continental US operations were recently impacted by a cyber incident affecting daily operations based in Alabama. Continental is actively engaged with a team of experts who are working to resolve the issues as quickly as possible and expects to resume full operations soon.”

Continental have not elaborated when the cyberattack will end, nor how widely disruptive the event has been to its daily operation. Furthermore, the US engine OEM has not yet said if a data breach has occurred.

read more