Find notable cyber news and cases, enriched with sources, timelines, and signals.

Vietnam-linked APIS database exposure of 220 million traveler records

Data Leak
First reported
Last updated
Happening score
H score 74
1 unique sources, 1 articles

Summary

Hide ▲

A Vietnam-linked APIS database was found accessible online, exposing 220 million+ passenger and crew records and creating a broad privacy and identity-risk event. The leaked material included passport numbers and flight details, along with names, dates of birth, and other travel information. Access was closed on June 8, but the records covered travel spanning January 2017 to April 2026 and could have been copied before remediation.

Related Happenings

AkzoNobel partial Anubis data leak

Data Leak
H score50 First: 04.03.2026 01:00 Last: 04.03.2026 01:00 Sources 1

About this happening: AkzoNobel faces a partial data leak after Anubis ransomware claimed it stole 170GB of data and almost 170,000 files. The leak site posted sample screenshots*...

LexisNexis Legal & Professional data leak after AWS intrusion

Data Leak
H score41 First: 03.03.2026 17:40 Last: 03.03.2026 17:40 Sources 1

About this happening: FulcrumSec leaked 2GB of files tied to LexisNexis Legal & Professional, exposing customer and business information that could be used for follow-on abuse. The company...

Timeline

  1. 08.09.2026 10:35 2 articles · 1h ago

    Kinryū Labs discovers exposed APIS Elasticsearch cluster

    Initial Disclosure

    Kinryū Labs discovered an exposed Elasticsearch cluster named 'pax-info' on June 3 while surveying exposed databases, found that it held more than 220 million passenger and crew records tied to a Vietnam-linked APIS environment, and began notifying Vietnamese authorities, airlines represented in the data, and national CERTs.

    Show sources
  2. 08.09.2026 10:35 1 articles · 1h ago

    Access to the exposed APIS database is remediated

    Mitigation Patch Update

    Access to the exposed APIS database was remediated on June 8, and Singapore Airlines' security team said it had engaged the relevant parties and taken steps to contain the issue.

    Show sources