Delta Air Lines Inc is investigating an unauthorised WiFi network on a Monday (Aug 10) flight out of Las Vegas, where a major cybersecurity conference was held over the weekend.
The US airline is working with federal law enforcement officials and aviation regulators to examine the activation of the network "for a short time,” said Delta spokesperson Morgan Durrant. It prompted the flight crew to deactivate the Boeing Co 757 aircraft’s WiFi for about 30 minutes, but "there was no hack of any Delta system” and air traffic control personnel did not declare an emergency.
"Safety of flight was never in question and no aircraft operating systems were affected,” Durrant said in an emailed statement on Aug 11. "We are fully investigating to gather a complete set of facts, which will take time.”
The Federal Bureau of Investigation is aware of reports of a "potential WiFi-related incident” on the flight and is in touch with local and corporate partners, said spokespeople for the bureau’s Atlanta office. They declined to provide further information.
A spokesperson for the Federal Aviation Administration (FAA) said the agency was looking into the report. A breach of an onboard WiFi system would not affect a flight’s critical safety systems, the spokesperson said.
Delta Flight 591 was travelling to Atlanta from Las Vegas the day after the Nevada city hosted Def Con, which bills itself as the world’s largest hacking and security conference. A Def Con spokesperson said the conference organisers had not been contacted by Delta or law enforcement but planned to launch their own investigation.
"Def Con does not encourage or condone illegal activities,” said spokesperson Monika Hathaway. "If one of our attendees was involved, we will ban them from attending in the future and apologise to everyone affected.”
It is relatively simple to disrupt a WiFi network and replace it with another Internet access point, allowing the person behind the disruption to read unencrypted data transmitted over the network, said Lennart Koopmann, founder of cybersecurity firm Nzyme. He said the two-step attack can be carried out with battery-powered devices smaller than a box of cigarettes that sell for about US$250 (RM1,022). Such devices are commonly used by security testers.
"My suspicion is that a passenger bought such a device and tried it out on the plane,” said Koopmann, whose firm protects against close-range cyberattacks.
Representatives for the Atlanta Police Department, Hartsfield-Jackson Atlanta International Airport and Transportation Security Authority didn’t immediately respond to requests for comment. – Bloomberg
