Researchers find SQL injection to bypass airport TSA security checks

August 30, 2024 at 03:10PM Security researchers uncovered a vulnerability in a critical air transport security system, enabling unauthorized individuals to potentially bypass airport security and access aircraft cockpits. Based on the meeting notes, the key takeaway would be that security researchers have discovered a vulnerability in a critical air transport security system, potentially allowing … Read more

Tired of airport security queues? SQL inject yourself into the cockpit, claim researchers

August 30, 2024 at 09:35AM Cybersecurity researchers discovered a vulnerability in the Known Crewmember (KCM) and Cockpit Access Security System (CASS) programs, allowing unauthorized access to skip airport security and enter the cockpit of commercial airliners. By exploiting a SQL injection bug in the third-party vendor site FlyCASS, the researchers gained admin access and manipulated … Read more