Fake Wi-Fi Network Appears on Delta Flight, Targeting Passenger Information

Photo of author

By Global Team

On the morning of the 10th local time, an unauthorized fake Wi-Fi network imitating the official in-flight service appeared aboard Delta Air Lines Flight 591 from Las Vegas to Atlanta. Delta and federal authorities have begun an investigation. (Photo = Solution News AI image illustration)

Delta Air Lines said that an unidentified fake Wi-Fi network appeared aboard Flight 591, which was traveling from Las Vegas to Atlanta on the 10th local time. Pilots reported to ground control that a passenger had created a fraudulent network impersonating the aircraft’s official Wi-Fi. Delta said it is investigating the facts together with federal investigative agencies and aviation regulators.

◆ Fake Wi-Fi “Evil Twin”

The fake Wi-Fi method is known in the security industry as an “evil twin” attack. It works by creating a fraudulent access point with the same name as the real Wi-Fi and boosting its signal strength above the legitimate one. Because smartphones and laptops usually connect automatically to the stronger signal, users end up connecting without realizing it is fake.

Once connected to the fake network, the data being transmitted can pass through the attacker’s hands. Sensitive information such as IDs, passwords, and credit card numbers can be stolen. The fake network that appeared on the plane was named “Delta WiFi Fast,” chosen to sound convincing so passengers would mistake it for the real in-flight Wi-Fi.

The problem is that fake Wi-Fi attacks do not require particularly sophisticated technical skills. Tools and software sold on the market for security testing can be abused as attack tools. That is why experts repeatedly warn people to be cautious around public Wi-Fi.

If signal interference is used to block access to the real Wi-Fi, the attack becomes even more effective. In that case, passengers are pushed toward the only network they can detect—the fake one—while the legitimate network is disabled. According to the pilot’s message, there were signs that the official Wi-Fi had been disrupted in the Delta incident as well.

◆ 30 minutes with Wi-Fi turned off

The situation in the cabin was quickly brought under control. After the crew noticed the fake network, the pilots sent two messages to the ground and turned off the official in-flight Wi-Fi for about 30 minutes. This was done to prevent the fake signal from overpowering the real one and deceiving passengers.

Delta emphasized that there was no safety issue with the aircraft and that the flight systems were not affected. The airline also made clear that the in-flight Wi-Fi itself was not breached. There were 199 passengers and 6 crew members on board, and no emergency was declared at air traffic control. The flight arrived in Atlanta as scheduled.

The investigation is still in its early stages. The U.S. Federal Aviation Administration said it is aware of the incident and is reviewing it, but also stated that even if in-flight Wi-Fi were compromised, it would not affect the aircraft’s flight safety systems. It has not yet been confirmed who created the fake network, why it was created, or whether any actual information was leaked.

◆ What to do in front of free Wi-Fi

Free Wi-Fi at cafes, airports, and hotels is exposed to the same risks. Avoid financial transactions on unfamiliar Wi-Fi networks, use a VPN when connecting, and turn off automatic connection settings—these are considered basic defense measures. (Photo = Solution News Magnific)

Just before the incident, DEF CON 34, the world’s largest hacker conference, was held in Las Vegas, and some attendees were on the flight. However, Delta said it could not identify who created the fake network and that simply having conference attendees on board does not mean they were involved.

The setting may have been the cabin of an airplane, but the risk itself is everywhere in daily life. Free Wi-Fi at cafes, airports, hotels, and subway stations is also vulnerable to evil twin attacks. Anyone can create a fake network by giving it a plausible-looking name. In South Korea as well, the risk of fake access points impersonating subway or downtown public Wi-Fi has been raised repeatedly.

The defense is not difficult. First, avoid sensitive activities such as banking or card payments on unfamiliar public Wi-Fi networks. If you must connect, turn on a virtual private network (VPN) to encrypt communications, and check that the address bar shows a secure connection with a lock icon (https). Turning off automatic Wi-Fi connection on your smartphone can reduce the chance of unknowingly connecting to a fake network.

The Delta Flight 591 incident was a reminder that Wi-Fi that looks perfectly normal is not always safe. As connectivity becomes more pervasive, experts say that the best shield is the habit of pausing and doubting free signals before connecting.