CAAS A.I CyberSecurity Scoring
CAAS
Company Information
Website:http://www.caas.gov.sg
Employees number:1,320
Number of followers:53,079
NAICS:481
Industry Type:Airlines and Aviation
Homepage:caas.gov.sg
CAAS Risk Score (AI oriented)
Between 700 and 749
CAASAirlines and Aviation
Updated:
03/04/2026
03/04/2026
732/1000
Moderate
Ba
CAAS Global Score (TPRM)
xxxx
CAASAirlines and Aviation
Score locked

CAASModerate
Current Score
732Ba (MODERATE)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
734
JUNE 2026
734
MAY 2026
733
APRIL 2026
733
MARCH 2026
732
FEBRUARY 2026
735
JANUARY 2026
734
DECEMBER 2025
734
NOVEMBER 2025
734
OCTOBER 2025
733
SEPTEMBER 2025
733
AUGUST 2025
732
MARCH 2021
759
Breach
05 Mar 2021 • CAAS
Sita and Singapore Airlines: Airline data hack: hundreds of thousands of Star Alliance passengers' details stolen
SITA Passenger Service System Cyber Attack
678
CRITICAL-81
SITCIV1768166633
Global Airline Passenger Data Breach Exposes Frequent Flyer Information
A sophisticated cyberattack on Sita, a Geneva-based IT provider serving approximately 90% of the global aviation industry, has compromised the personal data of hundreds of thousands of airline passengers worldwide. The breach, detected on 24 February, targeted Sita’s passenger service system (PSS) servers, which handle ticketing, baggage processing, and other critical operations for major airlines.
Sita, which supports the Star Alliance—including carriers like Singapore Airlines, Lufthansa, United, Air New Zealand, Cathay Pacific, and Malaysia Airlines—confirmed the incident in a statement, describing it as a "highly sophisticated attack." The company acted swiftly to contain the breach and launched an investigation with external cybersecurity experts.
Affected airlines were notified, with Air New Zealand informing passengers via email that the breach exposed frequent flyer data, including names, membership numbers, and tier status. However, the compromised data did not include passwords, credit card details, passport numbers, or travel itineraries.
The breach highlights vulnerabilities in shared aviation IT infrastructure, as Star Alliance members routinely exchange passenger data to facilitate loyalty program benefits. Sita’s U.S.-based subsidiary, SITA Passenger Service System (US) Inc, operates the affected servers in Atlanta, though the company’s headquarters remain in Switzerland. Investigations into the attack remain ongoing.
INCIDENT DETAILS -
TYPE
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for CAAS ??
What was CAAS's A.I Rankiteo Cyber Score in June 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in May 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in April 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in March 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in February 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in January 2026 ??
What was CAAS's A.I Rankiteo Cyber Score in December 2025 ??
What was CAAS's A.I Rankiteo Cyber Score in November 2025 ??
What was CAAS's A.I Rankiteo Cyber Score in October 2025 ??
What was CAAS's A.I Rankiteo Cyber Score in September 2025 ??
What was CAAS's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on CAAS's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with CAAS ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view CAAS's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?