Passengers across Europe are grappling with widespread flight delays and cancellations after a ransomware attack over the weekend crippled the check-in and boarding systems at several major airports.
Software provider Collins Aerospace, whose systems support airlines at London Heathrow, Brussels, Berlin, and Dublin, confirmed on Monday that it is finalizing updates to restore full functionality.
Impact on Airport Operations and Passenger Experience
Since Friday’s cyber-attack, airports have struggled to process passengers through automated kiosks and bag-drop machines, forcing staff to resort to manual checks.
At Brussels Airport, 40 of 277 departing flights and 23 of 277 arrivals were cancelled on Monday, with dozens more delayed as security checks and boarding verifications slowed.
Dublin Airport, while reporting no cancellations for the day, warned that further disruptions could not be ruled out and advised passengers to allow extra time.
Heathrow’s “vast majority” of flights were operating normally by Monday afternoon, but boarding queues were notably longer, and travellers were urged to arrive no earlier than three hours before long-haul departures and two hours before short-haul flights.
Airlines such as Aer Lingus described the outage as “significantly impactful,” and easyJet, British Airways owner IAG, and Wizz Air all saw share prices dip by over one percent in early trading, reflecting investor concerns about ongoing operational challenges.
The European Commission indicated it was monitoring the situation closely and saw “no evidence of a widespread or severe attack” beyond the affected provider.
Ransomware Attack Details and Attribution Concerns
The European Union Agency for Cybersecurity (ENISA) classified the incident as a ransomware attack, in which malicious actors encrypt and lock corporate data in exchange for ransom payments.
Collins Aerospace, a subsidiary of US aerospace giant RTX, disclosed that its Muse check-in software had been compromised.
The company is collaborating with four impacted airports and associated carriers to finalize and deploy system updates.
Jonathan Hall KC, the UK government’s independent reviewer of terrorism legislation, suggested on Times Radio that state-sponsored hackers could be behind the breach, though he cautioned that well-resourced private groups are also capable of sophisticated operations.
When prompted about possible Russian involvement, Hall noted, “anything is possible,” underscoring the difficulty of definitive attribution in complex cyber-incidents.
Broader Implications for Critical Infrastructure
This attack has highlighted the vulnerability of airports’ reliance on third-party suppliers for essential technology.
As aviation increasingly adopts digital efficiency solutions, a single compromise can cascade into regional travel chaos.
Earlier this month, Jaguar Land Rover halted factory production after a cybersecurity breach, and retailers such as Marks & Spencer have faced major incidents, costing hundreds of millions of pounds.
Regulators and industry leaders must now assess how to bolster resilience against ransomware and other cyber threats.
Measures under consideration include mandating more rigorous security standards for critical vendors and establishing rapid response protocols to isolate and remediate attacks without crippling passenger services.
For now, travellers are advised to monitor flight statuses closely and prepare for potential delays as Collins Aerospace works to secure and reinstate its systems.
Find this Story Interesting! Follow us on Google News, LinkedIn, and X to Get More Instant Updates