• 中文版
  • BM
  • News
  • Deals
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Tech
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • Tune Talk
    • U Mobile
    • Unifi
    • Yes
  • Cars
  • Contribute
  • Jobs
Menu
  • 中文版
  • BM
  • News
  • Deals
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Tech
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • Tune Talk
    • U Mobile
    • Unifi
    • Yes
  • Cars
  • Contribute
  • Jobs
Search
  • Tech
    • News
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • U Mobile
    • Unifi
    • Yes
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Buyer’s Guide
  • Opinions
  • Digital Life
  • Video
  • Deals
  • How-To
  • Cars
  • Bahasa Melayu
  • EV
  • Contribute
  • Advertise
Menu
  • Tech
    • News
    • Mobile
    • Computers
    • Cameras
    • Wearables
    • Audio
    • Drones
  • Telco
    • Celcom
    • Digi
    • Maxis
    • Time
    • U Mobile
    • Unifi
    • Yes
  • Reviews
    • First Impressions
    • Hands-on
    • Comparisons
  • Buyer’s Guide
  • Opinions
  • Digital Life
  • Video
  • Deals
  • How-To
  • Cars
  • Bahasa Melayu
  • EV
  • Contribute
  • Advertise
Search
Close
Home News

Personal data of AirAsia Malaysia, Indonesia and Thailand passengers allegedly leaked due to ransomware

  • BY Alexander Wong
  • 21 November 2022
  • 10:32 am
  • Comment
Share on FacebookShare on Twitter

Personal data belonging to 5 million AirAsia passengers via AirAsia Malaysia, AirAsia Indonesia and AirAsia Thailand may have been leaked after the airline was hit by a purported ransomware attack. It was alleged that AirAsia was a victim of a Daixin Team ransomware attack and the attackers have shared two CSV files which contain personal details of passengers and employees.

Sample data from CSV files shared to DataBreaches.net. Source: DataBreaches.net

The Daixin ransomware group has been on US’ Joint CyberSecurity Alert published on 21st October 2022. From the sample data, the CSV file contains the passenger ID, full name (first, middle and last), booking ID, total cost of ticket. Meanwhile, the CSV for employee data contains a wide array of details including photos, secret questions, secret answers, birth city, birth state, birth country and nationality.

AirAsia Group is allegedly hit by Daixin ransomware group 5M UNIQUE Passengers personal data, All employees personal data leaked@ransomwaremap pic.twitter.com/M9bg22S5QW

— Soufiane Tahiri (@S0ufi4n3) November 20, 2022

According to DataBreaches, the ransomware attack took place on 11th and 12th November 2022 and it was alleged that AirAsia has responded to Daixin Team through a chat. After sharing the sample data, they claimed that AirAsia didn’t try to negotiate the ransom amount and had no intention of paying. The ransom amount was not disclosed but Daixin Team said they have avoided locking up critical files related to flying equipment as part of their avoidance of encrypting or destroying anything that could be life-threatening.

A ransomware attack usually involves a malicious file that will encrypt all data on the server and the victim will have to pay the ransom to get their data back. According to Akamai, 71% of organisations in Asia Pacific have paid ransom fees between USD 100,000 to USD 1 million (RM458,330 – RM4.58 million), while 13% have paid between USD 1 million and USD 5 million (RM4.58 million – RM22.92 million). Ransomware attacks can severely disrupt airline operations. In May this year, hundreds of passengers were left stranded after Indian-based SpiceJet was hit by an attempted ransomware attack.

Daixin Team’s spokesperson told DataBreaches that the poor organisation of AirAsia Group had spared the company from further attacks. While they have encrypted a lot of resources and deleted backups, they didn’t proceed to cause more damage. It said, the group refused to pick through the garbage for a long time. As our pentester said, “Let the newcomers sort this trash, they have a lot of time.”

Besides leaking the passenger info on their dedicated leak site, the Daixin team said it plans to reveal more information about the network including the backdoors privately and freely on hacker forums.

We have reached out to AirAsia for further details on the matter.

Malaysia has been seeing a rise in personal data breaches with at least 3,699 reported incidents since 2017. Back in 2019, Malindo Air (now Batik Air) acknowledged a data breach which came from two former employees of its eCommerce service provider. Most recently, there was a data breach at Carousell involving 2.6 million users while personal data allegedly from the National Registration Department (JPN) and Election Commission including eKYC photos were sold online.

Despite the major breaches involving the personal data of Malaysian citizens, caretaker Home Affairs Minister Dato Seri Hamzah Zainuddin denies it came from JPN, while caretaker Defence Minister Datuk Seri Hishamuddin Hussien said the data breach does not jeopardise national security.

[ SOURCE 2 ]

Related reading

  • Carousell faces data breach, database of 2.6 million users including Malaysians allegedly sold for USD 1,000
  • 45 mil Malindo Air passenger records allegedly obtained from data breach appear on online forum
  • 3,699 personal data breaches reported in Malaysia since 2017
  • CyberSecurity Malaysia CEO: No such thing as 100% secure from cyber threats, but crucial to know how to act and recover once attacked
Tags: AirAsiaAirAsia Data LeakAirAsia IndonesiaAirAsia MalaysiaAirAsia ThailandAirlinesDaixin Ransomwaredata breachdata leakRansomewaresecurity
Alexander Wong

Alexander Wong

POPULAR

Upgraded To a New Phone? Cool. But When Was the Last Time you Upgraded your Shaver?

November 10, 2025

Personal data of AirAsia Malaysia, Indonesia and Thailand passengers allegedly leaked due to ransomware

November 21, 2022

5 Reasons Every Home Should Have a Smart Security System

November 11, 2025

Solar ATAP: The new solar programme for consumers will only start in 2026

December 2, 2025
Perodua QV-E EV

Perodua QV-E is now official: Electric sportback with 201hp, 445km NEDC range, priced at RM80k not inclusive of battery subscription

December 1, 2025

GrabRewards is now GrabCoins: Now with even more ways to earn and save

November 17, 2025

Copyright © 2025 · SoyaCincau.com
Mind Blow Sdn Bhd (1076827-P)

  • ADVERTISE
  • DISCLAIMER

Copyright © 2025 · SoyaCincau.com – Mind Blow Sdn Bhd (1076827-P)

  • ADVERTISE
  • DISCLAIMER