Our takeExfilSquad lists Frontier Airlines on its leak site with 2.4M records containing PII, flight data, baggage details and support emails. Corroborated by two sources as the airline's third incident this year from unpatched known vulnerabilities. A $1.5B carrier can absorb the cost; smaller teams cannot.Cyber Resilience desk
Sources (2)
- ransomware_live · ransomware_live
- databreaches · databreaches
What this means for you — Security leader:If you hold customer PII in booking or support systems, verify patch status on internet-facing apps tied to known vulns and confirm breach-notification and customer-comms playbooks cover a multi-million-record travel-data event. Treat the ExfilSquad listing as corroborated pressure, not noise.
What this means for you — Lean IT orgs:You almost certainly do not run airline systems. If you use Frontier or a travel/support vendor for business travel, ask that vendor in writing whether your employees' or customers' data was in the claimed set and what they have patched.
What this means for you — MSP:Flag travel, logistics, and high-volume customer-support clients: confirm internet-facing apps are patched against the vulns cited in prior Frontier write-ups, and that IR retainers and customer-notification templates are ready for a PII-heavy extortion claim.
What this means for you — Researcher:Diff this ExfilSquad 2.4M-record claim (PII, support cases, flight/baggage, complaint mail) against the earlier 2026 Frontier incidents and any samples or filings that appear; track whether the unpatched-vuln root cause is the same chain.