Employee badges

Ransomware Group Storm Claims Attack on Boeing and Airbus Supplier

Boeing
Facebook
X
LinkedIn
Reddit
WhatsApp
Source: Falcons Spotters/Shutterstock

The ransomware group Storm, which only first surfaced in August 2026, has listed small US aviation supplier Star Aviation from Kentucky as a victim.

Based in Goshen, Kentucky, Star Aviation specializes in the inspection and repair of wiring harnesses and electronic wiring systems used in commercial aircraft from Boeing and Airbus. The company also develops specialized repair procedures approved by the US Federal Aviation Administration (FAA) for damaged aircraft components, as well as alternative replacement parts approved through the FAA’s own PMA certification process. Screenshots published by Storm reportedly show both technical schematics and alleged employee badges, according to Cybernews.

Ad

Given the company’s position in the aviation supply chain, Cybernews researchers assess the alleged compromise as significant. While the actual extent of the claimed data exfiltration remains unclear, the attackers may have stolen sensitive operational data related to aircraft maintenance. Electrical wiring and interconnect systems are of central importance to flight operations, which is why leaked blueprints of such systems could fundamentally pose risks.

While the schematics themselves are unlikely to be suitable for direct remote attacks on aircraft, they could provide attackers with a valuable overview of systems that normally remain hidden behind the aviation industry’s technical and security firewall, and could be combined with additional information for targeted attacks on aviation organizations. The displayed employee badges also indicate that individual employees could be affected alongside the company itself, exposing them to an increased risk of identity fraud and targeted social engineering attacks.

In addition to Boeing: Storm already responsible for 44 to 48 victims

Storm listed Star Aviation on its darknet leak site on September 2. According to various monitoring services specializing in ransomware, the group has already claimed between 44 and 48 victims since its first appearance, spanning sectors such as healthcare, financial services, manufacturing, technology, transportation, and government agencies, with the vast majority of victims recorded so far coming from the US. Cybernews reached out to Star Aviation for comment, but a statement from the company was not yet available at the time of publication.

Ad

(Editorial Team)

Ad

Weitere Artikel