The Limited Times

Now you can see non-English news...

Carsten Spohr: Lufthansa boss falls victim to IT gaps

2022-09-24T06:40:10.868Z


Because it contains sensitive data, you should treat your boarding pass "like cash," says Lufthansa. Carsten Spohr, head of the airline, apparently did not stick to it - and became the victim of an IT loophole.


Enlarge image

Lufthansa boss Spohr

Photo:

SASCHA STEINBACH / EPO

Lufthansa boss Carsten Spohr fell victim to a gap in his own IT system.

The QR code on one of his boarding passes allowed strangers to gain access to the CEO's details, including his email address and cell phone number.

The reason is a loophole that the company is aware of.

In addition to information about a specific flight, boarding passes also contain other sensitive data, such as the service card numbers of frequent flyers.

Together with the surname of the respective customer, the pending booking can be read out on the Lufthansa website, boarding cards can be printed or the shipping methods for boarding documents can be changed.

An additional pin is only required to log into the customer's user profile.

Treat like cash

A Lufthansa spokesman confirms that the information contained in the boarding pass can be used to read data about a current booking and any cell phone numbers or e-mail addresses, provided these are stored.

Although there is "no security risk", the company is working on new standards for the industry via a business unit called "Digital Hangar".

Otherwise, however, the protection of the data is in the hands of the customers: “We recommend our passengers to be very careful with the flight documents.

They are to be treated like cash.” A piece of advice that Spohr apparently did not heed.

rai/mum

Source: spiegel

All business articles on 2022-09-24

You may like

News/Politics 2024-02-20T14:12:38.041Z

Trends 24h

Latest

© Communities 2019 - Privacy

The information on this site is from external sources that are not under our control.
The inclusion of any links does not necessarily imply a recommendation or endorse the views expressed within them.