The groups, known as “Silent Crow” and Belarusian counterpart “Cyber Partisans BY,” said they gained deep-tier access to systems ranging from booking platforms to executive e-mail, culminating in the erasure of roughly 7,000 servers and the theft of at least 20 TB of flight logs, passenger data, and internal communications. Russia’s Aeroflot, one of the world’s oldest airlines, has been left scrambling after pro-Ukraine hackers claimed to have “completely destroyed” the carrier’s internal IT infrastructure in a stealthy, year-long campaign. Hours later, the two hacktivist groups posted a joint statement on Telegram declaring the incident a “strategic strike” against both the company and Russia’s state security apparatus. Aeroflot has yet to confirm the hackers’ description of the breach, but Russia’s Prosecutor General has opened a criminal investigation into “unauthorised access” and acknowledged that a cyber-attack crippled the carrier’s services. Once inside, they reportedly compromised core platforms such as Sabre, Sirax, SharePoint, Exchange, CRM, ERP, and even monitoring tools used by Aeroflot’s security operations center. Silent Crow warned that “partial data dumps,” including passengers’ personal details and recorded phone calls, will be released in the coming weeks unless Moscow ends “repressive cyber-aggression” abroad. Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis. The attackers claim they penetrated the airline’s network in mid-2024 through targeted phishing and zero-day exploits, slowly escalating privileges until they reached Tier-0 domain controllers, the “crown jewels” of any Windows-based enterprise. Aeroflot publicly cited an unspecified “information-system failure” early Monday as it cancelled 42 domestic and regional flights out of Moscow’s Sheremetyevo Airport, leaving terminals jammed with frustrated travelers. Kremlin press-secretary Dmitry Peskov called the incident “quite alarming,” adding that the threat underscores vulnerabilities faced by large Russian enterprises amid the ongoing conflict in Ukraine. Gurubaran is a co-founder of Cyber Security News and GBHackers On Security.
This Cyber News was published on cybersecuritynews.com. Publication date: Mon, 28 Jul 2025 13:50:19 +0000