Advertiser Disclosure

Many of the credit card offers that appear on this site are from credit card companies from which we receive financial compensation. This compensation may impact how and where products appear on this site (including, for example, the order in which they appear). However, the credit card information that we publish has been written and evaluated by experts who know these products inside out. We only recommend products we either use ourselves or endorse. This site does not include all credit card companies or all available credit card offers that are on the market. See our advertising policy here where we list advertisers that we work with, and how we make money. You can also review our credit card rating methodology.

FlightAware Confirms Data Leak: Here’s What You Should Know

Ryan Smith's image
Ryan Smith
Ryan Smith's image

Ryan Smith

News Managing Editor

312 Published Articles 456 Edited Articles

Countries Visited: 197U.S. States Visited: 50

Ryan completed his goal of visiting every country in the world in December of 2023 and now plans to let his wife choose their destinations. Over the years, he’s written about award travel for publicat...
Edited by: Stella Shon
Stella Shon's image

Stella Shon

Senior Features Editor

154 Published Articles 870 Edited Articles

Countries Visited: 28U.S. States Visited: 30

With a degree in media and journalism, Stella has been in the points and miles game for more than 6 years. She most recently worked as a Corporate Communications Analyst for JetBlue. Find her work in ...
Jump to Section

We may be compensated when you click on product links, such as credit cards, from one or more of our advertising partners. Terms apply to the offers below. See our Advertising Policy for more about our partners, how we make money, and our rating methodology. Opinions and recommendations are ours alone.

In late July, FlightAware — the popular flight tracking website — had a data leak that exposed … well, pretty much all of your information if you have an account.

If you have a FlightAware account, here’s what you should know about this incident and steps you should take to limit the potential damage.

FlightAware Data Leak

Yesterday, FlightAware started emailing users about a data leak that occurred on July 25, 2024. Included in the email to users, the company admitted that nearly all types of data were exposed from user accounts.

On July 25, 2024, we discovered a configuration error that may have inadvertently exposed your personal information in your FlightAware account, including user ID, password, and email address. Depending on the information you provided, it may also have included your full name, billing address, shipping address, IP address, social media accounts, telephone numbers, year of birth, last four digits of your credit card number, information about aircraft owned, industry, title, pilot status (yes/no), and your account activity (such as flights viewed and comments posted).

FlightAware email to users

Beyond information related to logging into the website, the data leak includes your personal information, part of your credit card details, and even your aircraft or pilot information, if you have these and registered them on FlightAware.

What You Should Do

If you have an account with FlightAware, you should take a few steps to limit the potential effects of this leak, even if you didn’t get this email.

First, FlightAware users will need to reset their password the next time they log in to the website. However, if you’re using that same password on other websites, you should change those as well. As any social media accounts you’ve connected to FlightAware were likely exposed, you should change the password to those accounts also.

While creating a unique, complex password for every website can feel complicated, there are tools to make the process simpler. Programs like LastPass and 1Password can store your unique, difficult passwords using military-grade encryption. In this way, you can create a different password for every website, make a password that no one would ever guess, and then not worry about remembering a password like 1kzjkg5ka78#2W.

2 men reviewing laptop
Image Credit: Vorda Berge via Adobe Stock

Next, consider the exposure of your address and part of your credit card number. While it’s unlikely that you’ll move to resolve this, there are a few things you can do to help here. You can notify your bank about the potential exposure of your credit card information and ask for a replacement card with a new number. Additionally, you could sign up for credit monitoring services that will notify you if someone attempts to obtain credit in your name — such as someone trying to open a credit card using the info from this data leak.

You also might consider using a VPN online in the future to hide your IP address and/or using virtual credit card numbers online so your actual card number won’t be exposed.

Hot Tip:

While some elements are beyond your control, we’ve compiled a list of tips to keep your credit card and personal information safe going forward.

Advertisement

Final Thoughts

Unfortunately, if you have an account with FlightAware, your data may have been exposed in a leak in late July. The website didn’t notify users for several weeks, and it looks like nearly all of your data was compromised if you received an email about the incident.

Even if you didn’t receive the email, assume you were affected and take steps to secure your information and limit the effects as much as possible.

Ryan Smith's image

About Ryan Smith

Ryan completed his goal of visiting every country in the world in December of 2023 and now plans to let his wife choose their destinations. Over the years, he’s written about award travel for publications including AwardWallet, The Points Guy, USA Today Blueprint, CNBC Select, Tripadvisor, and Forbes Advisor.

INSIDERS ONLY: UP PULSE

Deluxe Travel Provided by UP Pulse

Get the latest travel tips, crucial news, flight & hotel deal alerts...

Plus — expert strategies to maximize your points & miles by joining our (free) newsletter.

We respect your privacy. This site is protected by reCAPTCHA. Google's privacy policy  and terms of service  apply.

Deluxe Travel Provided by UP Pulse
DMCA.com Protection Status