Delta, FAA Investigate Rogue Wi-Fi on Las Vegas Flight After DEF CON

Delta, FAA Investigate Rogue Wi-Fi on Las Vegas Flight After DEF CON Vegas Report © vegas-report.com
Delta, FAA Investigate Rogue Wi-Fi on Las Vegas Flight After DEF CON © vegas-report.com

Delta Air Lines and federal agencies are reviewing a security incident after a fake Wi-Fi network was discovered on a Las Vegas-to-Atlanta flight carrying DEF CON attendees, prompting a temporary shutdown of onboard internet service.

Delta Air Lines and federal authorities are investigating a cybersecurity incident that occurred on a Las Vegas-to-Atlanta flight shortly after DEF CON 34, one of the world's largest hacking conferences, concluded in Las Vegas. The incident has raised concerns about in-flight digital security as Las Vegas continues to host major technology and cybersecurity events.

On Monday, Delta Flight 591 departed Harry Reid International Airport with 199 passengers and six crew members, many of whom had attended DEF CON. About an hour into the flight, the crew detected an unauthorized wireless network mimicking the airline's official Wi-Fi, according to Delta and multiple cybersecurity news outlets.

Unauthorized Network Targets Passengers

The rogue network, named "Delta WiFi Fast," was reportedly set up by a passenger and directed users to a phishing website designed to steal Google login credentials. According to reporting by BleepingComputer and View From the Wing, the crew notified Delta corporate security via the Aircraft Communications Addressing and Reporting System (ACARS), stating that several passengers from the cyber conference were able to disrupt the plane's Wi-Fi and broadcast their own signal.

Cybersecurity experts identified the attack as an "evil twin" technique, where a fake Wi-Fi access point is created to imitate a legitimate network. Cabin crew responded by shutting down the aircraft's Wi-Fi for approximately 30 minutes as a precaution. Delta confirmed that no emergency was declared and that the plane's operating systems were not affected.

Federal Response and Ongoing Investigation

Upon arrival at Hartsfield-Jackson Atlanta International Airport, FBI agents met the aircraft, questioned passengers, and confiscated devices for further examination, according to TechCrunch. As of Wednesday, no arrests had been announced. The FBI's Atlanta office acknowledged awareness of the incident but declined to comment further, while the Transportation Security Administration referred inquiries to the FBI. The Federal Aviation Administration stated it was reviewing the report and emphasized that a breach of onboard Wi-Fi would not compromise flight safety systems.

Delta said its initial review confirmed the rogue network was not provided or operated by the airline, and it has not determined whether any passenger data was compromised. The airline is working with federal law enforcement and aviation regulators to fully investigate the incident. DEF CON organizers, who had not been contacted by Delta or authorities as of midweek, stated they would conduct their own review and would ban any attendee found responsible.

Las Vegas Remains a Cybersecurity Hub

DEF CON, founded in 1993, has grown into a major annual event in Las Vegas, attracting cybersecurity professionals, researchers, and government officials from around the world. The incident highlights the unique challenges Las Vegas faces as a host city for large-scale technology and security conferences, especially as attendees travel through Harry Reid International Airport and other local transportation hubs.

Interfering with in-flight Wi-Fi is prohibited by the Federal Communications Commission, and deploying a phishing page can lead to additional federal charges. The investigation remains ongoing as authorities work to determine the full scope and impact of the incident.