Air Canada issued a security notice for Air Canada Mobile App users as they detected unauthorized access to the mobile App between Aug. 22-24, 2018. It appears more than 20,000 user accounts have been accessed without proper authorization.
The attacker can extract the data stored in the Air Canada mobile App that includes name, email address, and telephone number. Also, the additional data such as Aeroplan number, Passport number, NEXUS number, Known Traveler Number, gender, birthdate, nationality, passport expiration date, passport country of issuance and country of residence.
Air Canada confirm that the payment card details are encrypted and stored as per the security standards set by the payment card industry or PCI standards.
If your account is affected then you will be receiving an email from Air Canada with instructions required to reactivate your Air Canada mobile App account, as a precautionary measure they have blocked all Air Canada mobile App user accounts and asked user’s to reset their accounts as a security precaution.
Air Canada confirm’s that the Aeroplan information was not stored in the app, so they are safe and they recommended user’s to you “monitor your Aeroplan transactions and contact Aeroplan immediately if you become aware of any unusual or unauthorized Aeroplan transactions.”
If your Air Canada account not linked with Air Canada mobile App account, then your account is not affected with the data leak.
Air Canada recommend’s customers to regularly review their financial transactions, be aware of any changes in their credit rating, and contact their financial services provider immediately if they become aware of any unusual or unauthorized transactions.
Hackers Selling Airport Security System Credentials on Dark Web for $10
Australian Airport Hacked: Significant Amount of Security Data Stolen by Vietnamese Hacker
A phishing campaign spoofing the United States Social Security Administration emerged in September 2024, delivering…
The Kaspersky researchers investigation into the EAGERBEE backdoor revealed its deployment within Middle Eastern ISPs…
The January 2025 Android Security Bulletin has issued important updates regarding critical vulnerabilities that affect…
India has unveiled its draft Digital Personal Data Protection Rules, designed to operationalize the Digital…
Hackers have successfully infiltrated Argentina’s Airport Security Police (PSA) payroll system, raising alarms about the…
An alarming new development emerged in the cybersecurity landscape with the release of a proof-of-concept…