FlightAware configuration error leaked user data for years

Share:

Flight tracking platform FlightAware is asking some users to reset their account login passwords due to a data security incident that may have exposed personal information.

The technology company is based in Houston, Texas and provides real-time as well as historical flight tracking data. FlightAware is considered the world’s largest flight-tracking platform with a network of 32,000 Automatic Dependent Surveillance-Broadcast (ADS-B) ground stations in 200 countries.

In a notification on the website of California’s Office of the Attorney General, the company informs that the date of the data security incident is January 1, 2021 and the cause was a configuration error.

The error was discovered on July 25, 2024, leaving personal user information exposed for more than three years. It is unclear if any of the data has been compromised.

“On July 25, 2024, we discovered a configuration error that may have inadvertently exposed your personal information in your FlightAware account, including user ID, password, and email address,” reads the notice.

Additionally, the following data types may have been compromised for some users, depending on whether people opted to add them on their accounts:

  • Full name
  • Billing address
  • Shipping address
  • IP address
  • Social media account
  • Telephone number
  • Year of birth
  • Last four digits of credit card number
  • Information about aircraft owned
  • Pilot status
  • Industry and title
  • Account activity (including flights viewed and comments posted)
  • Social Security number (SSN)

FlightAware said that the configuration error has been remediated now, and all account holders whose data has been exposed will be prompted to reset their passwords on their next login to the platform.

“Out of an abundance of caution, we are also requiring all potentially impacted users to reset their password. You will be prompted to do so at your next log-in to FlightAware.” – FlightAware

The service also provides a dedicated page for the users that want to reset their account password immediately, available here.

All users receiving the data security incident notification are offered a free-of-charge 24-month identity protection package through Equifax and are advised to report suspicious activity to their local law enforcement authorities.

Any user relying on the same credentials for logging into other online platforms should reset them there too as soon as possible to mitigate the risk of account hijacking via credential stuffing attacks.

BleepingComputer has asked FlightAware if they have evidence of unauthorized access and the number of impacted users, and we will update this post when we hear back.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
8:09 am, May 9, 2025
weather icon 8°C
L: 8° | H: 10°
overcast clouds
Humidity: 88 %
Pressure: 1020 mb
Wind: 6 mph NNE
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 100%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 5:17 am
Sunset: 8:35 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
8° | 10°°C 0 mm 0% 12 mph 79 % 1022 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
9° | 20°°C 0 mm 0% 12 mph 86 % 1021 mb 0 mm/h
Sun May 11 10:00 pm
weather icon
11° | 23°°C 0.98 mm 98% 12 mph 85 % 1015 mb 0 mm/h
Mon May 12 10:00 pm
weather icon
12° | 22°°C 1 mm 100% 12 mph 93 % 1015 mb 0 mm/h
Tue May 13 10:00 pm
weather icon
12° | 20°°C 1 mm 100% 7 mph 88 % 1022 mb 0 mm/h
Today 10:00 am
weather icon
10° | 13°°C 0 mm 0% 8 mph 79 % 1020 mb 0 mm/h
Today 1:00 pm
weather icon
14° | 16°°C 0 mm 0% 12 mph 56 % 1021 mb 0 mm/h
Today 4:00 pm
weather icon
17° | 17°°C 0 mm 0% 12 mph 31 % 1020 mb 0 mm/h
Today 7:00 pm
weather icon
15° | 15°°C 0 mm 0% 10 mph 41 % 1020 mb 0 mm/h
Today 10:00 pm
weather icon
12° | 12°°C 0 mm 0% 8 mph 61 % 1022 mb 0 mm/h
Tomorrow 1:00 am
weather icon
10° | 10°°C 0 mm 0% 7 mph 73 % 1021 mb 0 mm/h
Tomorrow 4:00 am
weather icon
9° | 9°°C 0 mm 0% 5 mph 86 % 1021 mb 0 mm/h
Tomorrow 7:00 am
weather icon
11° | 11°°C 0 mm 0% 6 mph 82 % 1020 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€91,852.93
4.22%
Ethereum(ETH)
€2,005.63
18.05%
Tether(USDT)
€0.89
-0.01%
XRP(XRP)
€2.06
6.26%
Solana(SOL)
€145.87
8.83%
USDC(USDC)
€0.89
0.00%
Dogecoin(DOGE)
€0.175258
8.86%
Shiba Inu(SHIB)
€0.000012
8.18%
Pepe(PEPE)
€0.000010
28.63%
Peanut the Squirrel(PNUT)
€0.240188
61.00%
Scroll to Top