Check-In System Flaw Puts Major Airlines at Risk, Wandera Reports | eWeek

Check-In System Flaw Puts Major Airlines at Risk

Daily Tech Briefing - Feb. 12
Écrit par
eWEEK Staff
eWEEK Staff
Feb 12, 2019
2 minute read
eWeek Le contenu et les recommandations de produits sont indépendants de la rédaction. Nous pouvons gagner de l'argent lorsque vous cliquez sur des liens vers nos partenaires. En savoir plus

Today’s topics include Wandera reporting that major airlines are at risk from a check-in system flaw, and Dell EMC eyeing the edge for open networking.

Security firm Wandera reported on Feb. 6 that it discovered an airline check-in vulnerability impacting multiple airlines, including Southwest, Air France, KLM, Vueling, Jetstar, Thomas Cook, Transavia and Air Europa.

The flaw is relatively simple, as the airlines have been emailing unencrypted check-in links to passengers. Since the links are unencrypted, they could be intercepted or reused by an unauthorized third party to change the details for a reservation and gain access to user information.

According to Michael Covington, vice president of product at Wandera, the company found that data including “suspicious parameters on a URL string was actually being used to transparently authenticate the user into the e-ticketing website.”


Covington said that by not limiting the e-ticketing check-in URLs to one-time use, the airlines open their e-ticketing systems up to a replay attack that allows an attacker to easily gain access to passenger accounts.

Dell EMC officials are eyeing the enterprise campus and other edge environments as next steps for the company’s now 5-year-old open networking efforts that until this year have focused primarily on central data centers.

Tom Burns, senior vice president and general manager of Dell EMC Networking and Solutions business, last week wrote that the software-defined WAN space and the rollouts of 5G networks by service providers will provide opportunity for Dell EMC to extend the reach of its open network systems and software.

He says the move into the SD-WAN arena will come with what he claims are “major updates to [Dell EMC’s] campus portfolio planned in 2019.” The deployment by service providers of 5G networks in the coming months and years will give them the opportunity to use “multi-purpose resources close to the edge and use software to deploy specific services as the need arises.”

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Propriété de TechnologyAdvice. © 2026 TechnologyAdvice. Tous droits réservés

Divulgation publicitaire : Certains des produits qui apparaissent sur ce site proviennent d'entreprises dont TechnologyAdvice reçoit une compensation. Cette compensation peut influencer la façon dont les produits apparaissent sur ce site, notamment l'ordre dans lequel ils apparaissent. TechnologyAdvice n'inclut pas toutes les entreprises ou tous les types de produits disponibles sur le marché.