Authorities are probing a customer data leak at Lion Air, Indonesia’s communications ministry said Friday, in a breach that reportedly affected millions of the carrier’s customers.
Two of the airline’s subsidiaries, Malaysia-based Malindo Air and Thai Lion Air, acknowledged passenger data may have been stolen from remote servers operated by Amazon.
“Thai Lion Air has come to be aware that some personal data concerning our passengers hosted on a cloud-based environment may have been compromised,” it said in a statement.
Lion Air — Southeast Asia’s biggest airline by fleet size — said it was cooperating with an Indonesian-Malaysian investigation into the apparent hack, which also affected Lion units Batik Air and Wings Air.
The leak involved the names, birthdays, addresses, phone numbers and other details of up to 35 million customers, the Jakarta Post reported, citing a source.
Lion did not reveal how many customers were affected, but said their payment information was not stored on the affected servers.
Amazon Web Services, which operates servers that stored the breached data, declined to comment.

More from AFP
- Cyberattacks Target Websites of German Airports, Admin
- Meta Slapped With 5.5 Million Euro Fine for EU Data Breach
- International Arrests Over ‘Criminal’ Crypto Exchange
- France Regulator Raps Apple Over App Store Ads
- More Political Storms for TikTok After US Government Ban
- Meta Hit With 390 Million Euro Fine Over EU Data Breaches
- Facebook Agrees to Pay $725 Million to Settle Privacy Suit
- China’s ByteDance Admits Using TikTok Data to Track Journalists
Latest News
- Russian Millionaire on Trial in Hack, Insider Trade Scheme
- British Retailer JD Sports Discloses Data Breach Affecting 10 Million Customers
- Vulnerabilities in OpenEMR Healthcare Software Expose Patient Data
- Russia-Linked APT29 Uses New Malware in Embassy Attacks
- Meta Awards $27,000 Bounty for 2FA Bypass Vulnerability
- The Effect of Cybersecurity Layoffs on Cybersecurity Recruitment
- Critical Vulnerability Impacts Over 120 Lexmark Printers
- BIND Updates Patch High-Severity, Remotely Exploitable DoS Flaws
