Ethical Hacking News
A massive Vietnam-linked Advanced Passenger Information System (APIS) database containing over 220.8 million passenger and crew records was exposed due to a combination of security misconfigurations and lack of proper access controls. The breach has raised concerns about the potential for widespread identity theft and disruption to global air travel, highlighting the importance of cybersecurity and the need for organizations and governments to prioritize the protection of sensitive information.
The Vietnam-linked APIS database breach exposed over 220.8 million passenger and crew records due to security misconfigurations and lack of access controls.The breach was discovered by researchers from Kinryƫ Labs, who identified the Elasticsearch cluster containing sensitive information such as passport numbers and flight details.The exposed database covered many airlines across Asia-Pacific, Europe, and the Middle East, making it a potential target for hackers.Researchers verified the data by matching records against their own travel to Vietnam, but could not determine whether anyone had copied or stolen the data before the system was secured.The breach highlights the importance of proper security measures, access controls, and transparency and accountability in protecting sensitive information.
The recent discovery of a massive Vietnam-linked Advanced Passenger Information System (APIS) database breach has sent shockwaves throughout the cybersecurity community, raising concerns about the potential for widespread identity theft and disruption to global air travel. The database, which contained over 220.8 million passenger and crew records from January 2017 to April 2026, was exposed due to a combination of security misconfigurations and lack of proper access controls.
The breach was discovered by researchers from Kinryƫ Labs, who identified the Elasticsearch cluster, named "pax-info," while searching for exposed databases. The cluster contained sensitive information such as passport numbers, identities, and flight details, which could potentially affect travelers of many nationalities who flew to, from, or through Vietnam. The database was hosted on IP addresses assigned to Viettel in Hanoi, but the researchers could not confirm which Vietnamese organization operated the system.
The exposed database contained a vast array of information, including names, dates of birth, sex, nationalities, passport or travel-document numbers, expiration dates, and issuing countries. It also included flight numbers and dates, airlines, departure and destination airports, transit airports, seat numbers, baggage references, and scheduled, estimated, and actual flight times. The database covered many airlines across Asia-Pacific, Europe, and the Middle East, making it a potential target for hackers who seek to disrupt air travel and identity theft.
Researchers verified the data by matching records in the database against their own travel to Vietnam, and found that the information was legitimate. However, without server logs, they could not determine whether anyone had copied or stolen the data before the system was secured. The database was secured by June 8, with Singapore Airlines helping coordinate the response.
The breach highlights the importance of proper security measures and access controls in protecting sensitive information. It also underscores the need for organizations to regularly monitor their systems for vulnerabilities and take proactive steps to prevent data breaches. The fact that the breach was caused by a combination of security misconfigurations and lack of proper access controls serves as a wake-up call for organizations to review their security protocols and take steps to prevent similar breaches in the future.
The breach also raises questions about the accountability of organizations and governments in protecting sensitive information. In this case, the Vietnamese government and airlines were not immediately notified of the breach, and it was only reported after the database was secured. This lack of transparency and accountability has sparked concerns about the potential for similar breaches to occur without prompt attention and response.
In conclusion, the recent breach of the Vietnam-linked APIS database serves as a reminder of the importance of cybersecurity and the need for organizations and governments to prioritize the protection of sensitive information. It also highlights the need for transparency and accountability in the face of data breaches, and the importance of proactive measures to prevent similar breaches in the future.
Related Information:
https://www.ethicalhackingnews.com/articles/A-Vulnerability-of-Global-Proportions-The-Massive-Vietnam-Linked-APIS-Database-Breach-ehn.shtml
https://securityaffairs.com/198671/data-breach/massive-vietnam-linked-apis-database-exposes-passport-and-flight-data.html
Published: Tue Sep 8 06:56:29 2026 by llama3.2 3B Q4_K_M