logo

Update: Researcher Calls In-Flight Entertainment Hacks a Safety Threat

ID: 1ecdbcaa-c9a4-511a-b667-44717fda6bb3

STIX ID: report--1ecdbcaa-c9a4-511a-b667-44717fda6bb3

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2016-12-20

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

IOActive researcher Ruben Santamarta reported multiple security flaws in Panasonic Avionics' in-flight entertainment (IFE) software — such as SQL injection, arbitrary file reads, and payment-check bypasses — and demonstrated proof-of-concept manipulation. Firmware images for customized airline deployments were found publicly accessible for systems used by at least 13 carriers, increasing exposure and complicating uniform security assessments; while no confirmed avionics compromise was shown, IOActive warned of possible pivoting from passenger entertainment to crew or safety-critical systems under certain configurations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.