SECURITY Signal 446
DEF CON attendee spoofs Delta in-flight Wi-Fi with evil twin hotspot using Wi-Fi Pineapple
A passenger returning from DEF CON 34 used a Wi-Fi Pineapple to launch deauthentication attacks against Delta Flight 591's in-flight Wi-Fi and broadcast an evil twin network called "Delta WiFi Fast" that redirected passengers to a phishing page harvesting Google credentials.
This incident demonstrates that in-flight Wi-Fi networks remain trivially exploitable by anyone with a consumer-grade pentest device, and airlines currently have no technical countermeasures against evil twin attacks on their own networks. The pilot response via ACARS shows that in-flight network tampering is treated as a security incident requiring law enforcement, even when aircraft operational systems are unaffected.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
A passenger on Delta Flight 591 used a Wi-Fi Pineapple to jam the plane's Wi-Fi and broadcast an evil twin network called "Delta WiFi Fast" that harvested passenger credentials.
Pilots notified ground crew via ACARS that someone was tampering with in-flight Wi-Fi, and authorities met the aircraft at the gate, though it is unclear if any arrests were made.
Delta confirmed that flight safety was never threatened and no aircraft operating systems were affected, but the incident highlights the insecurity of in-flight Wi-Fi networks.
THE CLUSTER
↗