Update: Researcher Calls In-Flight Entertainment Hacks a Safety Threat
ID: 1ecdbcaa-c9a4-511a-b667-44717fda6bb3
STIX ID: report--1ecdbcaa-c9a4-511a-b667-44717fda6bb3
Feed Name: Security Ledger
IOActive researcher Ruben Santamarta reported multiple security flaws in Panasonic Avionics' in-flight entertainment (IFE) software — such as SQL injection, arbitrary file reads, and payment-check bypasses — and demonstrated proof-of-concept manipulation. Firmware images for customized airline deployments were found publicly accessible for systems used by at least 13 carriers, increasing exposure and complicating uniform security assessments; while no confirmed avionics compromise was shown, IOActive warned of possible pivoting from passenger entertainment to crew or safety-critical systems under certain configurations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
