Heathrow was among several European airports hit by widespread delays on Saturday after a cyber attack crippled an electronic check in and baggage system used by multiple airlines.
The attack, which targeted software developed by Collins Aerospace, forced airlines across Europe to revert to manual processes, leaving passengers facing long queues, delays, and missed connections. Heathrow confirmed that while most flights continued to operate, many were delayed as staff scrambled to recover.
Wider Impact Across Europe
Brussels Airport reported a “large impact” on its flight schedule, including cancellations, while Berlin’s Brandenburg Airport experienced extended waiting times. Dublin and Cork airports also confirmed minor disruptions, as airlines reverted to manual check in and boarding procedures.
Collins Aerospace, owned by RTX, acknowledged a “cyber related disruption” to its Muse software, which allows airlines to share check in desks and boarding gates. The company said the impact was limited to customer check in and baggage drop systems and could be managed manually, though the BBC reported that most airlines at Heathrow were affected, with British Airways switching to a backup system.
The National Cyber Security Centre said it was working with Collins Aerospace, affected UK airports, and law enforcement agencies to understand the full impact. The European Commission also confirmed it was monitoring the situation but stressed there was no evidence of a “widespread or severe” attack.
Passengers Caught in Chaos
Travellers described hours long queues, confusion at gates, and cancelled connections. One passenger at Heathrow said staff were “manually tagging luggage and checking passengers in over the phone.” Another reported sitting on the tarmac for over an hour with no information, while others said the disruption caused them to miss family funerals and onward flights.
Airports deployed extra staff to manage crowds, but disruption persisted throughout the day. Flight tracker FlightAware recorded hundreds of delayed flights across the affected airports. Eurocontrol, Europe’s air traffic regulator, asked airlines to cut half of their flight schedules at Brussels Airport until Monday to ease pressure.
Security and Industry Concerns
The incident highlights the aviation industry’s vulnerability to cyber threats. Last July, a faulty software update from cybersecurity firm Crowdstrike grounded flights worldwide, and experts warned that reliance on interconnected digital systems makes airports and airlines particularly exposed.
While some UK politicians suggested Russian involvement, cybersecurity experts cautioned it was too early to attribute blame. Criminal ransomware gangs, often operating from Russia or Eastern Europe, remain the most likely culprits, given their track record of targeting critical infrastructure for financial extortion.
For now, Collins Aerospace has yet to disclose the origin of the hack, and investigations continue. Industry observers say the attack could reignite calls for airports and airlines to invest more heavily in cyber resilience, as digital disruptions increasingly threaten aviation’s reliability.
