Jeppesen ForeFlight Data Breach Exposes Sensitive Aviation and Operational Data

Published: 7 October 2026 · Last Updated: 7 October 2026
Other Commercial data breach illustration
Breach Discovery: Not Publicly DisclosedBreach Notification: Not Publicly Disclosed

The group, a cybercriminal extortion group, claimed to have stolen sensitive data from Jeppesen ForeFlight, a former Boeing aviation unit, with sources saying the stolen information could pose operational safety and security risks. The company says its investigation found no operational impact. Affected individuals should monitor their credit reports and watch for phishing attempts while more details emerge.

CompanyJeppesen ForeFlight
IndustryOther Commercial
Data Types ExposedOperational and System Data, Business Records, Employee-Related Data, Potentially Sensitive Security Information
People AffectedNot Publicly Disclosed
Attack MethodExtortion/Data Theft
Regulators NotifiedNot Publicly Disclosed

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Jeppesen ForeFlight Data Breach?

Jeppesen ForeFlight, a navigation and digital aviation technology company, became a target of the cybercriminal extortion group. The attackers claimed to have stolen sensitive data from systems tied to the company. As a result, Jeppesen ForeFlight is now facing questions about what information was accessed and how.

According to reporting on the incident, the group was actively attempting to extort the company around the same time a suspected leader of the group was detained by authorities in Jordan. The extortion attempt reportedly involved threats to release sensitive information that sources said could pose operational safety and security risks. The breach discovery date has not been publicly disclosed.

Boeing, which sold Jeppesen ForeFlight to the private equity firm Thoma Bravo in November 2025, acknowledged awareness of the extortion claims. A Boeing spokesperson said the company is reviewing the matter with the Jeppesen ForeFlight team. However, Jeppesen ForeFlight itself stated that, based on its investigation so far, there has been no impact to its operations or products.

This incident is connected to a broader hacking campaign. The group has been linked to the exploitation of a vulnerability in Oracle’s PeopleSoft software, a platform widely used for human resources and payroll management. That vulnerability allowed the group to access systems across several industries, including transportation and technology sectors. Because Jeppesen ForeFlight operates in the aviation technology space, it fits the pattern of organizations targeted during this campaign.

Who was affected?

The population affected by this incident has not been publicly disclosed. Because Jeppesen ForeFlight provides navigation and flight planning tools used across the aviation industry, any exposed data could potentially touch employees, customers, or industry partners who rely on its platform.

At this time, no specific number of affected individuals has been released. Therefore, anyone who has interacted with Jeppesen ForeFlight’s systems, whether as an employee or a business customer, should stay alert for official communication. Given the company’s role in aviation navigation, the scope of this incident may extend beyond typical consumer data and could touch operational information as well.

What Information Was Potentially Exposed?

Public reporting has not detailed a full list of every data field involved in this incident. However, sources familiar with the investigation indicated that the stolen information was sensitive enough to raise operational safety and security concerns. Based on the nature of the group’ prior campaigns against similar organizations, the following categories of information are generally understood to be at risk in incidents like this one.

  • Operational and system-related data tied to aviation navigation services
  • Potentially sensitive business records
  • Information that sources say could carry safety or security implications
  • Employee-related data, consistent with other breaches tied to this campaign

Because the exact scope of exposed data has not been confirmed publicly, affected individuals should treat this as a developing situation. In similar breaches tied to the same hacking campaign, attackers have accessed sensitive employee records, including medical and psychiatric information. This raises concern about the depth of data these threat actors are capable of obtaining.

If personal or employee data was indeed included in the theft, affected individuals could face heightened risks of identity theft, phishing attempts, or targeted scams. Additionally, given the operational nature of Jeppesen ForeFlight’s business, any exposure of system or navigation-related data could carry broader implications beyond typical consumer harm. This combination of personal and operational risk makes the situation worth watching closely.

What is the company doing?

Boeing confirmed it is aware of the extortion claims tied to its former subsidiary. In a statement, a Boeing spokesperson said the company is actively reviewing the matter together with the Jeppesen ForeFlight team. This suggests an active internal review is underway, even though Jeppesen ForeFlight no longer belongs to Boeing.

Separately, a spokesperson for Jeppesen ForeFlight said the company has investigated the claims made by the threat actor. Based on that investigation and the company’s security posture, Jeppesen ForeFlight stated there was no impact to its operations or products. However, the company has not publicly confirmed the full extent of any data that may have been accessed.

Because this incident involves an extortion claim rather than a confirmed large-scale breach notification, further details about remediation steps, customer notifications, or protective services have not been made public. Individuals concerned about their information should watch for official updates directly from the company.

What Should Affected Individuals Do?

Monitor Your Credit Reports

Regularly checking your credit reports is one of the simplest ways to catch suspicious activity early. You can request free credit reports from each of the three major credit bureaus once per year, and more frequently in many cases under current consumer protections.

Look closely for unfamiliar accounts, inquiries you didn’t authorize, or changes to your personal information. If you spot something unusual, report it immediately. Early detection often makes a significant difference in limiting damage from identity theft.

Stay Alert for Phishing Attempts

After a breach like this, scammers often use stolen details to craft convincing phishing emails, texts, or phone calls. Because attackers may already have some personal information, these messages can appear more legitimate than typical scams.

Avoid clicking links or downloading attachments from unexpected messages, even if they appear to come from a known organization. Instead, verify any request directly through official company channels. This extra step can prevent further compromise of your accounts.

Consider a Fraud Alert or Credit Freeze

If you believe your personal information may have been included in this incident, placing a fraud alert on your credit file can help. A fraud alert requires lenders to take extra steps to verify your identity before approving new credit in your name.

For stronger protection, a credit freeze restricts access to your credit report entirely, making it harder for identity thieves to open new accounts. While this adds an extra step when you apply for credit yourself, it significantly reduces fraud risk. Both options are free to set up with each credit bureau.

Protect Work-Related and Operational Accounts

Given the nature of Jeppesen ForeFlight’s business, employees or partners with system access should review their account security. This includes updating passwords and enabling multi-factor authentication wherever possible.

In addition, anyone with administrative or operational access should coordinate with their IT or security team. This ensures any unusual login activity or access attempts get flagged quickly. Taking these steps can help limit the broader impact of a breach involving operational systems.

Know Your Legal Options

If it’s later confirmed that your personal information was exposed in this breach, you may have legal options available. Many data breach victims have successfully pursued compensation through class action lawsuits when companies fail to adequately protect their information.

Consulting with a data breach attorney can help you understand your rights. Many offer free case evaluations, so there’s little downside to exploring whether you qualify for compensation as more details about this incident become available.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



Related Data Breaches

See the latest data breaches we're tracking →