{"id":14835,"date":"2025-09-22T12:10:23","date_gmt":"2025-09-22T12:10:23","guid":{"rendered":"https:\/\/newestek.com\/?p=14835"},"modified":"2025-09-22T12:10:23","modified_gmt":"2025-09-22T12:10:23","slug":"european-airports-continue-to-crawl-after-a-cyberattack-on-collins-muse-systems","status":"publish","type":"post","link":"https:\/\/newestek.com\/?p=14835","title":{"rendered":"European airports continue to crawl after a cyberattack on Collins\u2019 MUSE systems"},"content":{"rendered":"<div>\n<div id=\"remove_no_follow\">\n<div class=\"grid grid--cols-10@md grid--cols-8@lg article-column\">\n<div class=\"col-12 col-10@md col-6@lg col-start-3@lg\">\n<div class=\"article-column__content\">\n<section class=\"wp-block-bigbite-multi-title\">\n<div class=\"container\"><\/div>\n<\/section>\n<p>A cyberattack that began late Friday on an airline service provider in Europe has caused widespread disruption at several of Europe\u2019s busiest airports, triggering flight delays, cancellations, and the fallback to manual check-in and boarding operations.<\/p>\n<p>The outage hit Collins Aerospace\u2019s Multi-User System Environment (MUSE) software, used for electronic check-ins, baggage drops, and boarding pass generation. While the systems are offline, airlines are reportedly having to compensate with paper tickets, handwriting, backup computers, and long queues.<\/p>\n<p>Brussels Airport has been among the hardest hit, cancelling dozens of flights over the weekend, <a href=\"https:\/\/apnews.com\/article\/europe-airports-cyberattack-4eb95c1157cf34b606e021088256d20a\" target=\"_blank\" rel=\"noreferrer noopener\">citing<\/a> that Collins Aerospace \u201cis not yet able to deliver a new secure version of the check-in system.\u201d Heathrow and Brandenburg also saw extensive delays, though by Sunday their systems were beginning to recover.<\/p>\n<h2 class=\"wp-block-heading\" id=\"disruption-across-major-european-airports\">Disruption across major European airports<\/h2>\n<p>Collins Aerospace (part of RTX) has <a href=\"https:\/\/www.theguardian.com\/uk-news\/2025\/sep\/20\/heathrow-airport-delays-cyber-attack-berlin-brussels-cancelled-delays\" target=\"_blank\" rel=\"noreferrer noopener\">acknowledged<\/a> the \u201ccyber-related disruption\u201d to its MUSE software and said the impact is so far \u201climited to electronic customer check-in and baggage drop.\u201d They say manual operations are in place and that they are \u201cworking to restore full functionality to customers as quickly as possible.\u201d Collins did not immediately respond to CSO\u2019s request for comments.<\/p>\n<p>Brussels Airport has indicated the problems are serious enough to force flight cancellations well into Monday, because the secure version of the MUSE system hasn\u2019t yet been delivered. \u201cCheck-in continues to be carried out in an alternative manner on Monday: online check-in and the self bag drop are still available, and check-in is now mainly done with laptops and iPads,\u201d a Brussels Airport spokesperson said in an email.\u00a0 \u201cIt is not yet clear when we will be able to switch back to the normal check-in and boarding system.\u201d<\/p>\n<p>Although the vast majority of flights are operating on Monday, with 40 out of 277 departing flights and 23 out of 277 arriving flights cancelled, the spokesperson added. Reportedly, 50 out of 257 scheduled outbound flights were cancelled on Sunday, with another 45 grounded the day before.<\/p>\n<p>Heathrow Airport also experienced certain disruptions, although no cancellations were reported. \u201cAirlines across Heathrow have implemented contingencies whilst their supplier Collins Aerospace works to resolve an issue with their airline check-in systems at airports across the world,\u201d a Heathrow spokesperson said. \u201cThese contingencies mean the vast majority of flights at Heathrow are operating as normal, although check-in and boarding for some flights may take slightly longer than usual.\u201d<\/p>\n<p>Brandenburg Airport <a href=\"https:\/\/ber.berlin-airport.de\/en.html\">warned<\/a> passengers of possible delays from the incident, though no cancellations were reported owing to operators cutting off connections to affected systems.<\/p>\n<h2 class=\"wp-block-heading\"><a><\/a>Shared infrastructure and systemic risk<\/h2>\n<p>Collins Aerospace\u2019s MUSE platform serves many airports\u2019 check-in and baggage drop systems, meaning a fault there ripples across multiple nations. Brussels, Heathrow, Berlin and Dublin all reported impacts. Frankfurt and Paris airports were relatively spared, showing that usage of the compromised system varies.<\/p>\n<p>\u201cAlthough information is still limited, the disruption at several major European airports highlights how interconnected global transportation has become and how dependent it is on shared digital infrastructure,\u201d said Darren Guccione, CEO and Co-founder at Keeper Security. \u201cA technical incident with a single provider can quickly cascade across multiple airports.\u201d<\/p>\n<p>For travellers, the fallout has meant early arrivals, long queues, cancelled flights, and constant uncertainty. Many were forced to abandon self-service check-in or leave home earlier than usual. Airports urged passengers to check flight status in advance, arrive 2-3 hours ahead for short and long flights where possible, and be prepared for manual baggage drop and check-ins.<\/p>\n<p>\u201cThis system is not owned or operated by Heathrow, so whilst we cannot resolve the IT issue directly, we are supporting airlines and have additional colleagues in the terminals to assist passengers,\u201d the Heathrow spokesperson added. \u201cWe encourage passengers to check the status of their flight before traveling to Heathrow and to arrive no earlier than three hours for long-haul flights and two hours for short-haul.\u201d<\/p>\n<p>Bugcrowd CEO, Dave Gerry, stressed the gravity of the incident, stating, \u201cThis will be a critical time for the affected countries to stay attentive for any opportunistic threat actors that may be looking to gain access and exploit the nation\u2019s security systems and the common public alike.\u201d<\/p>\n<p>While the exact cause of the MUSE outage remains unclear, cyberattack fears loom large. Threat groups like Scattered Spider have <a href=\"https:\/\/www.csoonline.com\/article\/4014787\/scattered-spider-shifts-focus-to-airlines-as-strikes-hit-hawaiian-westjet-and-now-qantas.html\">recently expanded<\/a> into aviation, hitting carriers such as Hawaiian, WestJet and Quantas. Past breaches, from <a href=\"https:\/\/www.csoonline.com\/article\/566287\/british-airways-hack-was-by-same-group-that-compromised-ticketmaster.html\">British Airways<\/a>\u2019 data exposure to <a href=\"https:\/\/www.csoonline.com\/article\/570797\/air-india-data-breach-highlights-concerns-around-third-party-risk-and-supply-chain-security.html\">Air India<\/a>\u2019s vendor compromise, show just how vulnerable airline systems can be.<\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>A cyberattack that began late Friday on an airline service provider in Europe has caused widespread disruption at several of Europe\u2019s busiest airports, triggering flight delays, cancellations, and the fallback to manual check-in and boarding operations. The outage hit Collins Aerospace\u2019s Multi-User System Environment (MUSE) software, used for electronic check-ins, baggage drops, and boarding pass generation. While the systems are offline, airlines are reportedly having&#8230; <\/p>\n<p class=\"more\"><a class=\"more-link\" href=\"https:\/\/newestek.com\/?p=14835\">Read More<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1],"tags":[],"class_list":["post-14835","post","type-post","status-publish","format-standard","hentry","category-uncategorized","is-cat-link-borders-light is-cat-link-rounded"],"_links":{"self":[{"href":"https:\/\/newestek.com\/index.php?rest_route=\/wp\/v2\/posts\/14835","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/newestek.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/newestek.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/newestek.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/newestek.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=14835"}],"version-history":[{"count":0,"href":"https:\/\/newestek.com\/index.php?rest_route=\/wp\/v2\/posts\/14835\/revisions"}],"wp:attachment":[{"href":"https:\/\/newestek.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=14835"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/newestek.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=14835"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/newestek.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=14835"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}