Data breach in the travel sector and strategies for risk mitigation

Belinda Enoma · Journal of data protection & privacy. · 2020

The airline industry relies heavily on personal data for transactions. This paper discusses the British Airways data breach of 2018, how the attack unfolded and problems that led to the attack. It provides examples of other airline-breach incidents through the years, how they were handled, and shows different types of risks airlines face today that should be addressed. Personal data has become increasingly attractive to hackers, and this paper highlights privacy law compliance, the importance of protecting and securing data in the industry including vulnerabilities and levels of acceptable risk in third-party transactions. It reviews various publications and resources about the cyberattack and describes risk mitigation strategies that airlines should implement that would significantly reduce cyber risks. As threat actors adapt with methods of cyberattacks, proper steps should be taken to mitigate these risks.

Read the paper · More papers on PaperTik