Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Collins Aerospace

Collins Aerospace Vendor Cyber Rating & Cyber Score

collinsaerospace.com

Collins Aerospace is an RTX business. Our global team dreams, designs and delivers smarter, more connected solutions for passenger safety and comfort, mission success, space exploration, and operational efficiency and sustainability.


Collins Aerospace A.I CyberSecurity Scoring

Collins Aerospace
Company Information
Website:https://www.collinsaerospace.com
Employees number:52,866
Number of followers:1,106,825
NAICS:3364
Industry Type:Aviation and Aerospace Component Manufacturing
Homepage:collinsaerospace.com
Collins Aerospace Risk Score (AI oriented)
Between 0 and 549
logo
Collins AerospaceAviation and Aerospace Component Manufacturing
Updated:
31/03/2026
373/1000
Critical
C
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Collins Aerospace Global Score (TPRM)
xxxx
logo
Collins AerospaceAviation and Aerospace Component Manufacturing
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Collins Aerospace
Collins AerospaceCritical
Current Score
373C (CRITICAL)
01000
10 incidents
-123 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
370Before Incident
MAY 2026
361Before Incident
APRIL 2026
362Before Incident
Cyber Attack
07 Apr 2026Collins Aerospace
Heathrow Airport, Copenhagen Airport and Charles de Gaulle Airport: Major cyberattack on aviation IT systems snarls flights across Europe and hits Prague connections

Cyberattack Disrupts Major European Airports, Causing Widespread Flight Chaos

348After Incident
CRITICAL-14
AÉRCOPHEA1777287590
Cyberattack Disrupts Major European Airports, Causing Widespread Flight Chaos Between 4 and 6 April, a sophisticated cyberattack targeted a shared IT platform used by airlines and airports across Europe, triggering cascading disruptions at key hubs. The incident paralyzed critical systems including check-in, baggage handling, and boarding at Heathrow, Charles de Gaulle, Frankfurt, and Copenhagen airports, forcing staff to revert to manual processes. The fallout was severe: over 1,600 flights were canceled or delayed on 6 April alone, with airlines activating emergency rosters and passengers advised to arrive early with printed itineraries. While Prague’s Václav Havel Airport was not directly affected, knock-on effects caused delays for several flights on Easter Monday and Tuesday as aircraft and crews were mispositioned. The attack exposed vulnerabilities in aviation’s digital infrastructure, prompting discussions on supply-chain resilience and duty-of-care obligations for businesses. Travel management firms in Prague have since updated contingency plans, recommending flexible bookings, digital visa backups, and buffer days for high-stakes travel. Cybersecurity analysts warn the incident may accelerate EU efforts to include aviation under the Critical Entities Resilience Directive, pushing airports to invest in network segmentation and offline backups. Prague Airport, which already has redundancy plans in its digital transformation strategy, is expected to prioritize these upgrades in response to the disruption.
INCIDENT DETAILS -
TYPE
Cyberattack
IMPACT
check-inbaggage handlingboardingOperational Impact: Cascading disruptions at major European airports, manual processes requiredBrand Reputation Impact: Discussions on supply-chain resilience and duty-of-care obligations
MARCH 2026
373Before Incident
FEBRUARY 2026
359Before Incident
JANUARY 2026
351Before Incident
DECEMBER 2025
491Before Incident
NOVEMBER 2025
336Before Incident
OCTOBER 2025
608Before Incident
Ransomware
18 Oct 2025Collins Aerospace
Collins Aerospace

Collins Aerospace Supply Chain Attack by Everest Ransomware Gang

323After Incident
CRITICAL-285
COL4492344101825
The Everest ransomware gang claimed responsibility for a cyberattack on Collins Aerospace, a critical subsidiary of RTX (Raytheon Technologies), disrupting operations at major European airports, including Heathrow (London), Brussels, and Berlin. The attack targeted Muse software, crippling check-in and boarding systems, leading to flight delays, cancellations, and forced manual operations. Collins Aerospace is a key provider of avionics, mission systems, and defense technologies for commercial, military, and space applications, making it a high-value target in the global aerospace and defense supply chain. The breach raised concerns over potential access to classified or sensitive data, threatening national security, defense readiness, and critical infrastructure integrity. The Everest group’s leak site briefly vanished post-claim, fueling speculation of law enforcement intervention, panic, or strategic retreat due to the target’s sensitivity. The incident underscores the evolving ransomware threat, where attacks transcend financial extortion to geopolitical disruption, eroding trust in essential aviation and defense systems. The cascading impact on airport operations and military supply chains highlights vulnerabilities in interconnected critical infrastructure, demanding enhanced cross-sector cybersecurity collaboration to mitigate future risks.
INCIDENT DETAILS -
TYPE
Supply Chain AttackRansomwareOperational Disruption
MOTIVATION
Financial ExtortionDisruption of Critical InfrastructurePotential Geopolitical Impact
IMPACT
Check-in systemsBoarding systemsMuse softwareFlight delaysFlight cancellationsManual operations at Heathrow, Brussels, Berlin airportsOperational Impact: Severe disruption to airport operations across major European hubsCustomer Complaints: Likely high (due to flight disruptions)Brand Reputation Impact: Significant (trust erosion in aviation/defense supply chain)
DATA BREACH
Sensitivity Of Data: Potentially high (aviation/defense systems data)Data Exfiltration: Unconfirmed (Everest gang claimed breach but leak site vanished)
SEPTEMBER 2025
469Before Incident
Cyber Attack
21 Sep 2025Collins Aerospace
Collins Aerospace (RTX Corp)

Cyber Attacks Disrupt Major European Airports and Jaguar Land Rover Operations

455After Incident
CRITICAL-14
COL4541545100525
A cyber attack on Collins Aerospace’s Muse software platform—used for flight check-ins, baggage handling, and boarding coordination—disrupted operations at major European airports, including Heathrow (UK), Berlin (Germany), and Brussels (Belgium). The attack forced airlines to manually process passengers, leading to flight cancellations, delays, and stranded travelers. While Collins confirmed the breach, no details were disclosed regarding the attacker’s identity, motive, or potential customer data compromise. The incident follows geopolitical tensions, with suspicions pointing toward state-backed Russian hackers targeting European infrastructure. Delhi and Bengaluru airports (India), which also use Muse, remained unaffected but are monitoring the situation. The attack highlights vulnerabilities in critical aviation software monopolies, where redundancies are limited, and disruptions cascade globally.
INCIDENT DETAILS -
TYPE
Cyber Attack (Software Disruption)Targeted Malware Breach (Potential Ransomware)
MOTIVATION
Geopolitical (Airport Attack)Financial (JLR Attack)
IMPACT
Potential customer data (JLR)Unknown (Airport Systems)Muse Software (Flight Check-in, Baggage Drop, Boarding Gate Coordination)JLR Manufacturing & Retail Software Platforms (Global)Ongoing (Airports: Partial Recovery; JLR: 3+ Weeks)JLR Manufacturing Halted Until 2024-09-24Flight Cancellations/Rescheduling (Europe)Manual Check-ins & Baggage HandlingJLR Global Production Stoppage (Brazil, UK, India)Supply Chain DisruptionsTata Motors Q3 Financial Hit (JLR = 70% of Consolidated Revenue)Airline & Airport Revenue Losses (Unquantified)Stranded Passengers (Airports)Social Media OutrageCollins Aerospace (Software Reliability Concerns)JLR/Tata Motors (Operational Resilience Questions)Trust Erosion in Air Travel SystemsIdentity Theft Risk: Potential (JLR Customer Data)
DATA BREACH
Potential Customer Data (JLR)Operational Data (Airports)Sensitivity Of Data: High (PII Risk for JLR)Data Exfiltration: Suspected (JLR)Personally Identifiable Information: Potential (JLR)
SEPTEMBER 2025
633Before Incident
Cyber Attack
20 Sep 2025Collins Aerospace
Heathrow Airport (and affected service provider for check-in/boarding systems)

Cyber Attack Disrupts Check-in and Boarding Systems at Major UK and European Airports

454After Incident
HIGH-179
HEA5202352092125
A cyber attack disrupted critical check-in and boarding systems at Heathrow Airport, leading to operational chaos. Around 70 flights were cancelled on Saturday morning, while dozens more faced delays of up to three hours. The outage forced staff to revert to manual check-in and boarding procedures, significantly slowing down passenger processing. The incident also impacted Brussels and Berlin airports, suggesting the breach targeted a shared third-party service provider responsible for automated airport systems. Travel expert Simon Calder warned of potential 'widespread cancellations' due to the ongoing disruption. The attack caused financial losses (refunds, compensations, operational costs), reputational damage (passenger frustration, media coverage), and logistical strain (staff overtime, rescheduling). While no data breach was explicitly reported, the operational halt and cascading delays across multiple airports highlight severe vulnerabilities in aviation infrastructure. The incident underscores risks tied to supply chain cyber attacks, where a single compromised vendor can paralyze major hubs.
INCIDENT DETAILS -
TYPE
cyber attackservice disruption
IMPACT
check-in systemsboarding systemsDowntime: up to 3 hours (for delayed flights; ongoing for cancellations)flight cancellations (~70 at Heathrow)flight delays (dozens, up to 3 hours)manual check-in/boarding procedurespotential widespread cancellations
Cyber Attack
20 Sep 2025Collins Aerospace
Brussels Airport

Cyberattack on Brussels Airport Disrupts Passenger and Baggage Check-in Systems

454After Incident
CRITICAL-179
BRU0093500092025
Brussels Airport experienced a cyberattack on Friday evening that crippled its passenger and baggage check-in systems, forcing manual processing and causing significant operational disruptions. The attack, which also affected other European airports, targeted a third-party service provider’s systems. As of Saturday, nine flights were cancelled, and 15 departed with delays, with no immediate resolution expected. Passengers were advised to confirm flight statuses before arriving, as the outage led to processing bottlenecks and potential further cancellations. An investigation is underway to assess the full extent of the damage, but the incident has already resulted in financial losses (e.g., compensation, operational costs), reputational harm due to publicized delays, and potential long-term trust erosion among travelers and partners. The attack disrupted critical infrastructure, highlighting vulnerabilities in supply chain cybersecurity and the cascading effects of third-party breaches on large-scale operations.
INCIDENT DETAILS -
TYPE
cyberattacksystem disruption
IMPACT
passenger check-in systemsbaggage check-in systemsDowntime: ongoing (as of 2024-02-24, no solution expected in the coming hours)manual passenger processingflight delaysflight cancellationsBrand Reputation Impact: potential negative impact due to service disruptions
Ransomware
20 Sep 2025Collins Aerospace
Brussels Airport, Dublin Airport, Collins Aerospace and London Heathrow: EU agency confirms ransomware attack behind airport disruptions

Ransomware Attack Disrupts Check-In Systems at Major European Airports

454After Incident
CRITICAL-179
BRUDUBCOLIMP1770877259
Ransomware Attack Disrupts Check-In Systems at Major European Airports A ransomware attack targeting Collins Aerospace, a key supplier of automated check-in systems, caused widespread disruptions at several of Europe’s busiest airports on February 10–12, 2026. The incident, confirmed by the EU’s cybersecurity agency (ENISA), locked critical data and forced airports to revert to manual processes, leading to flight cancellations and delays. Affected Airports and Impact - Brussels Airport reported 29 cancellations and only 42% of flights departing on time, with staff using iPads and laptops for manual check-ins. - London Heathrow, Europe’s busiest airport, implemented contingency measures as airlines struggled with system outages. - Berlin Airport, already strained by high passenger volumes due to the Berlin Marathon, faced delays exceeding one hour for departures. - Dublin Airport experienced minimal impact, relying on manual boarding procedures, including handwritten passes. Scope and Response Collins Aerospace, owned by RTX, stated it was working with affected airports to restore full functionality, with updates nearing completion. ENISA confirmed law enforcement involvement but did not disclose the attack’s origin. Sophos threat intelligence director Rafe Pilling noted that while high-profile ransomware attacks are more visible, they are not necessarily increasing in frequency though their disruptive potential remains a growing concern for critical infrastructure. Broader Context The incident underscores the vulnerability of aviation systems to cyber threats. A recent Bitkom survey found ransomware as the most common cyberattack against German companies, with one in seven paying ransoms. Despite the disruption, analysts emphasize that large-scale attacks with physical-world consequences remain rare.
INCIDENT DETAILS -
TYPE
Ransomware
IMPACT
Systems Affected: Automated check-in systemsDowntime: 2026-02-10 to 2026-02-12Operational Impact: Flight cancellations, delays, manual check-in processesBrand Reputation Impact: High
DATA BREACH
Data Encryption: Yes (ransomware locked critical data)
AUGUST 2025
630Before Incident
JULY 2025
625Before Incident
JUNE 2025
727Before Incident
Ransomware
16 Jun 2025Collins Aerospace
Collins Aerospace

ENISA Threat Landscape 2025: Phishing and Vulnerability Exploitation Dominate EU Cyber Incidents (July 2024 - June 2025)

618After Incident
CRITICAL-109
COL5132151100225
Collins Aerospace, a critical supplier in the aerospace and defense industry, fell victim to a ransomware attack that disrupted European airports by targeting its digital supply chain dependencies. The incident, highlighted in ENISA’s Threat Landscape 2025 report, exemplifies how cyber-attacks on high-value vendors can cascade into broader operational failures. While specific details on data compromise were not disclosed, the attack caused significant service outages, delaying flights and grounding operations across multiple airports reliant on Collins’ systems. The disruption underscored vulnerabilities in interconnected OT (operational technology) and supply chain networks, where a single breach can paralyze downstream services. ENISA warned that such attacks exploit critical dependency points, amplifying impact beyond the initial target. The incident aligns with a rising trend of threat actors leveraging ransomware to cripple essential infrastructure, with financial and reputational fallout extending to airlines, passengers, and regulatory bodies. No direct mention of data theft was made, but the operational halt suggests severe financial losses, reputational damage, and potential regulatory scrutiny for failing to secure supply chain resilience.
INCIDENT DETAILS -
TYPE
PhishingVulnerability ExploitationDDoSRansomwareHacktivismMalware DeploymentSupply Chain Attack
MOTIVATION
Geopolitical (79%, e.g., elections, EU support for opposition groups)Financial (13%)Cyber-Espionage (7%)
IMPACT
Outdated Mobile DevicesOperational Technology (OT) SystemsPublic Administration (38% of attacks)Critical Supply Chain Dependencies (e.g., Collins Aerospace)European Airports (disruption example)Downtime: Limited (2% of DDoS attacks caused disruption)Supply Chain Ripple EffectsAirport Disruptions (via Collins Aerospace ransomware)Public Sector Targeting (38%)Erosion of trust in public administrationSupply chain vulnerability exposure
JUNE 2024
799Before Incident
Cyber Attack
16 Jun 2024Collins Aerospace
Collins Aerospace (RTX)

Cyber-Attack Disrupts Electronic Check-In and Baggage Systems at Multiple European Airports

703After Incident
HIGH-96
COL2394223100325
A cyber-attack disrupted Collins Aerospace’s Muse software, which manages electronic check-in and baggage systems for multiple airlines across European airports, including Heathrow, Brussels, and Berlin. The outage forced manual check-ins, causing multi-hour delays, missed connections, and operational chaos. While British Airways used a backup system, most airlines at Heathrow were severely affected, with passengers stranded in long queues, luggage tagging done manually, and boarding passes failing at gates. Brussels Airport faced flight cancellations and schedule reductions (50% capacity), while Dublin and Cork experienced minor delays. The incident disrupted thousands of travelers, including elderly and mobility-impaired passengers who missed critical flights (e.g., funerals, medical connections). Though no data breach or ransomware was reported, the attack exposed vulnerabilities in shared aviation infrastructure, echoing prior global IT failures (e.g., CrowdStrike 2024). Authorities, including the UK’s National Cyber Security Centre and the European Commission, intervened to mitigate fallout, but recovery extended into Sunday. The financial and reputational damage included operational costs, passenger compensation, and erosion of trust in digital airport systems.
INCIDENT DETAILS -
TYPE
Cyber-AttackService DisruptionOperational Outage
IMPACT
Muse software (electronic check-in and baggage drop)Airline departure control systems2025-09-20 (late night) to at least 2025-09-21 (ongoing recovery)Flight delaysManual check-in processesLong passenger queuesMissed connectionsTerminal evacuations (Dublin T2, unrelated security alert)Flight cancellations (Brussels Airport: 50% schedule reduction)Reports of multi-hour delaysLack of mobility assistanceMissed flightsHunger/tiredness due to prolonged waitsNegative passenger experiencesMedia coverage of chaos at major airports
Ransomware
16 Jun 2024Collins Aerospace
Heathrow Airport and Collins Aerospace: Airport chaos highlights rise in high-profile ransomware attacks, cyber experts say

European Airports Hit by Major Ransomware Attack, Stranding Thousands

703After Incident
CRITICAL-96
HEACOL1768614271
European Airports Hit by Major Ransomware Attack, Stranding Thousands A weekend cyberattack disrupted check-in and boarding systems at multiple major European airports on September 20, 2025, causing widespread flight delays and cancellations. The incident, which affected Heathrow Airport Terminal 4 and other locations, left thousands of passengers stranded as airlines struggled with manual processing. The attack targeted Collins Aerospace, a subsidiary of RTX, though no ransomware group has yet claimed responsibility. Cybersecurity experts noted that while most ransomware operations focus on financial extortion, a growing subset of attackers particularly Western-based groups are pursuing high-profile targets for reputational clout within criminal networks. Rafe Pilling, Director of Threat Intelligence at Sophos, warned that these "outliers" are becoming more ambitious, prioritizing disruption over purely monetary gains. The European Union Agency for Cybersecurity (ENISA) confirmed the breach on September 22, highlighting the increasing boldness of cybercriminals. Martyn Thomas, Emeritus Professor of IT at Gresham College, cautioned that such attacks could escalate to critical infrastructure or healthcare systems, risking physical harm if motivations shift. The incident follows a pattern of rising high-impact ransomware attacks, including a 2024 breach of London’s Transport for London (TfL), which the UK National Crime Agency (NCA) attributed to the Scattered Spider group. That attack, linked to two teenagers, caused millions in losses and demonstrated the growing threat posed by organized cybercriminal networks. While the exact perpetrators of the airport hack remain unidentified, the event underscores the escalating risks of ransomware as attackers expand their targets and tactics.
INCIDENT DETAILS -
TYPE
Ransomware
MOTIVATION
Reputational clout within criminal networks, disruption
IMPACT
Systems Affected: Check-in and boarding systemsOperational Impact: Widespread flight delays and cancellations, manual processing of passengersBrand Reputation Impact: High
JUNE 2023
801Before Incident
Cyber Attack
16 Jun 2023Collins Aerospace
Collins Aerospace

Cyber-Attack Disrupts Major European Airports via Collins Aerospace MUSE Software

795After Incident
CRITICAL-6
COL3695636100325
A cyber-attack disrupted Collins Aerospace’s MUSE (Multi-User System Environment) passenger handling software, crippling check-in and boarding systems at major European airports, including Heathrow (London), Brussels, and Berlin. The attack forced airports to revert to manual check-in and baggage processing, causing hundreds of flight delays and cancellations, long passenger queues, and operational chaos. Passengers reported waiting up to three hours just to check in, leading to missed connections, heated confrontations, and widespread frustration. The incident highlighted vulnerabilities in the interdependent digital infrastructure of air travel, with prior reports suggesting Collins Aerospace had been targeted by ransomware-seeking hackers in 2023. While the company worked to restore systems, the disruption had cascading effects on travel logistics, airline reputations, and passenger trust, with some travelers stranded or forced to rebook flights. Authorities, including the UK government and European Commission, investigated potential state-sponsored involvement (e.g., Russia), though no definitive attribution was confirmed at the time.
INCIDENT DETAILS -
TYPE
Cyber-AttackPotential RansomwareDigital Sabotage
MOTIVATION
Disruption of Critical InfrastructurePotential Financial Gain (if ransomware)Geopolitical Tensions (speculative)
IMPACT
Collins Aerospace MUSE SoftwareCheck-in SystemsBaggage Handling SystemsDowntime: Ongoing as of last report (2024-09-20)Flight Delays (hundreds)Flight CancellationsManual Check-in/Baggage ProcessingPassenger Frustration and ChaosDisrupted Connecting FlightsLong queues (3+ hours)Missed connecting flightsLack of communicationArguments among passengersNegative media coveragePassenger distrust in aviation IT systemsCriticism of Collins Aerospace and affected airports

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Collins Aerospace ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Collins Aerospace's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Collins Aerospace's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Collins Aerospace ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Collins Aerospace's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?