Manchester Airport Group (MAG) Data Breachcheck your eligibility

On 27 August 2026, Manchester Airports Group (MAG) confirmed it was the subject of a cybersecurity incident The data obtained relates to car park, lounge and Fast Track bookings and in-airport WIFI sign-ups at Manchester, Stansted, and East Midlands airports. Reports indicate that around 8.7 million customers were affected.
Pocket Claim has partnered with KP Law, a law firm that specialises in data breach claims. KP Law is currently exploring a group action data breach claim on behalf of those affected. If Manchester Airports Group notified you about the data breach, you may be able to register your interest in the potential claim and receive updates directly from KP Law if the claim moves forward.
In this matter, if it is successful, you will pay 25% of the amount that is recovered plus the cost of any After the Event Insurance. Termination fees may apply if you fail to co-operate with your lawyer or withdraw from the claim.
Find out if you can register your interest
Answer a few short questions to check if you are eligible to register your interest in a potential group action data breach claim against Manchester Airports Group. You may have a right to seek compensation.
THE FACTS SO FAR
What do we know about the Manchester Airport Group data breach?
On 27 August 2026, Manchester Airports Group (MAG) confirmed that an unauthorised third party had obtained customer data during a cyber-security incident. Reports indicate that MAG became aware of the hack on 25 August 2026. The incident was not limited to Manchester Airport: it involved customer information connected withManchester, London Stansted and East Midlands airports
MAG says the affected information relates to: airport car-parking bookings; lounge bookings; Fast Track bookings; and registrations for airport Wi-Fi.
The information accessed includes customers’ email addresses, telephone numbers, vehicle registration numbers and postcodes. This does not necessarily mean that every affected customer had all these categories of information accessed. MAG says neither it nor the affected system holds customers’ bank or payment details.
Approximately 8.7 million customers across the three airports were reportedly affected. MAG reportedly told the BBC that most of the affected information consisted of email addresses collected when passengers registered for airport Wi-Fi.
If you Manchester Airport Group notified you about the data breach, register your interest for a potential group action data breach claim currently being explored by our partnered specialist data breach law firm, KP Law. You could have a right to seek compensation.
FREQUENTLYASKED QUESTIONS
Manchester Airport Group (MAG) stated that an unauthorised third party obtained customer information connected with airport car-parking, lounge and Fast Track bookings and registrations for airport Wi-Fi.
Approximately 8.7 million customers across Manchester, London Stansted and East Midlands airports were reportedly affected. The incident reportedly occurred during the weekend before MAG became aware of it on Tuesday, 25 August 2026. On Thursday, 27 August 2026, MAG published a statement online regarding the data security incident.
MAG says it took immediate action to contain the incident, including restricting access to the affected systems, engaging specialist cyber-security advisers and notifying the relevant authorities.
MAG also says:
- Passenger safety and aviation security were not compromised;
- Operational airport systems were not involved;
- Airport operations and customer parking services remain unaffected; and
- Neither MAG nor the affected system holds customers’ bank or payment details.
The group has apologised for the inconvenience and concern caused.
MAG has notified affected customers directly. If you have received a notification from MAG stating that your information was accessed, this indicates that MAG has identified some information associated with you within the affected data.
However, receiving a notification does not necessarily mean that every category of information listed by MAG was accessed. The notification may not identify the precise information involved in your individual case.
If you have not received a notification, that does not conclusively establish that your information was unaffected. You should check your junk or spam folder and contact MAG directly if you remain concerned.
MAG says the affected information includes customers’:
- Email addresses;
- Telephone numbers;
- Vehicle registration numbers; and
- Postcodes.
This does not mean that every affected customer had all four categories of information accessed.
Most of the affected information was reportedly limited to email addresses collected when passengers registered for airport Wi-Fi. More detailed information, reportedly including vehicle registrations, was associated with car-parking, lounge and Fast Track bookings.
There are no upfront costs to join the claim if it moves forward. However, if KP Law pursue a claim on your behalf and that claim is successful, you may have to pay a 'success fee'. This fee is taken from the compensation awarded to you. At KP Law, their success fee is competitive, and they’ll make sure you are fully informed about any potential costs before you enter into an agreement. If you lose, you won’t have to pay a penny.
In this matter, if it is successful, you will pay 25% of the amount that is recovered plus the cost of any After the Event Insurance. Termination fees may apply if you fail to co-operate with your lawyer or withdraw from the claim.

