logo

Understanding the Impact of Scattered Spider on the Airline & Transportation Industry

ID: 7272a5ed-4b40-59a4-85d7-95712c37d4b5

STIX ID: report--7272a5ed-4b40-59a4-85d7-95712c37d4b5

Feed Name: Qualys Blog

Threat Score
78/100

Date Published: 2025-07-21

Date Updated: 2026-04-28

Author: April Lenhard

...
...

Scattered Spider (also known as UNC3944) is a financially motivated cybercriminal collective conducting social-engineering, MFA‑bypass and ransomware campaigns—recently targeting airlines and third‑party IT vendors. Qualys analyzed ~600,000 anonymized airline-sector assets, identified exposure to actively exploited CVEs (notably CVE-2015-2291, CVE-2021-35464, CVE-2024-37085), found thousands of internet-facing and EOL/EOS systems at risk, and provided remediation guidance and monitoring recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.