Qantas Airways Limited
Attack Intelligence
Qantas Airways Limited was compromised in a ransomware attack attributed to shinyhunters in October 2025. The organization, operating in the Transportation/Logistics sector in Australia, was added to the group's data leak site as part of an extortion campaign.
shinyhunters operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.
[AI generated] Qantas Airways Limited is an Australian international and domestic airline service. Founded in 1920, it is the third oldest airline in the world. Qantas is recognized for its commitment to safety, operational reliability, and customer service. The Qantas Group includes Qantas Domestic, Qantas International, Jetstar, and Qantas Loyalty, as they serve customers across various divisions.
Intelligence correlations link this incident to 1 vulnerability(ies) including CVE-2026-35273, which may have been leveraged as initial access vectors or for lateral movement.