Iberia, the Spanish airline, has revealed that cybercriminals gained unauthorized access to some of its customer information. The data breach, identified on November 29, involved names, loyalty program memberships, and contact details but did not include sensitive information such as passwords or banking details. The airline confirmed that it promptly engaged security protocols to limit the impact of the incident.
This event follows recent cybersecurity incidents affecting other major airlines and corporations. In August, Air France-KLM detected fraudulent access to customer data, and in October, Qantas revealed a significant breach where data from millions of customers was stolen during an attack on the software firm Salesforce. Similar breaches have impacted companies like Disney, Google, IKEA, Toyota, and McDonald's.
Industry Implications and Cybersecurity Measures
The breach at Iberia highlights the persistent threat of cyberattacks targeting the aviation sector, notably through third-party service providers. Airlines are now emphasizing the importance of ongoing security enhancements to protect passenger data and maintain industry trust amid increasing digital vulnerabilities.
Although Iberia assured no fraudulent activity has been detected so far, the incident underscores the need for robust cybersecurity measures across all airline operations and associated services.

