Let's take off: how scammers cheat passengers at airports
Fraudsters can use various schemes to deceive passengers at airports, experts have warned about this. The attackers take advantage of the fact that a large number of travelers are concentrated in the air harbors, many of whom are in an unusual environment, in a hurry or anxious. For more information about how scammers deceive passengers at airports, how dangerous such schemes are and how to protect yourself from them, read the Izvestia article.
Why are passengers at airports interesting to scammers
Airports open up wide opportunities for the use of fraudulent social engineering schemes, Dmitry Galov, head of Kaspersky GReAT in Russia, said in an interview with Izvestia. A large number of passengers are concentrated in air harbors, many of whom are in an unusual environment, in a hurry or anxious.
— In addition, some travelers arrive in another country and try to access the Internet as soon as possible to contact their loved ones, call a taxi, open a card, and so on, — says the expert. — At this point, a person may be looking for a free Wi-Fi network, a local SIM card, or an opportunity to purchase an eSIM.
According to the source, scammers can take advantage of this need by offering to connect to a fake access point or buy a mobile tariff on a phishing site. In addition, people who are "stuck" at airports are attractive targets for intruders, says Alexander Vurasko, Director of Development at the Solar AURA External Digital Threat Monitoring Center.
Such passengers are in a stressful unplanned situation, which means that their critical thinking abilities are reduced. They try to find the fastest and most effective way out of the situation and may agree to non-standard solutions. In addition, they may be short of money and are more likely to be tempted by a "good deal" without assessing all the possible risks.
What fraudulent schemes to expect at airports in 2026
In terms of attacks on airport passengers in 2026, a further evolution of already known schemes with elements of social engineering is likely towards complication and the use of multi-stage attack scenarios, says Dmitry Zubarev, director of the Analytical Center of the Ural Center for Security Systems.
— For example, attacks through QR codes may receive additional development, — the Izvestia interlocutor believes. — Now, during such attacks, passengers are asked to scan a code to receive taxi discounts, earn bonuses for flights or participate in promotions of well-known brands, but in fact the links lead to phishing sites.
According to the expert, attacks like Evil Twin ("evil twin") will also remain relevant, when attackers create fake Wi‑Fi access points with names similar to the official ones. In addition, fraudsters will continue the practice of creating fake websites for the sale of air tickets and tourist vouchers, as well as schemes with false reports of flight cancellations and the need for additional payments.
In 2026, we should expect an increase in the number of schemes related to fake airline websites, taxi-hailing services at a bargain price, as well as resources for ordering food "on board an airplane," experts at MTS Defender predict. When accessing such sites, the potential victim ends up on a phishing page, which allows the attacker to gain access to the user's personal data.
"It is also likely that there will be an increase in the number of fake notifications in messengers and SMS messages on behalf of the airport or airline about flight postponement, replacement of the boarding gate or the need to pay extra for luggage," experts say.
What fraudulent schemes have you encountered at airports before
Meanwhile, fraudsters both in Russia and abroad have been trying to use various schemes to deceive passengers at airports for several years. Previously, there have been schemes using QR codes leading to fake payment or authorization pages, and Wi-Fi twin networks with the name of the airport or airline, says Anastasia Patrusheva, a specialist in the cyber intelligence department of Bastion.
—The attackers also actively sent phishing emails and text messages about flight delays, refunds, reservation changes, or lost luggage," says Izvestia's interlocutor. — In addition, the attackers use fake support contacts, offer to install "official" applications or provide confirmation codes.
According to the expert, it is important to understand that the risk is not the QR code itself or the Wi-Fi network, but where they lead - to a phishing page, a fake access point, or another data theft tool. In turn, Dmitry Galov recalls that previously attackers created phishing pages disguised as websites of international operators such as Vodafone and Ooredoo.
Users were offered to purchase a SIM card or eSIM, top up their mobile Internet account, or log into their personal account. In fact, the goal was to steal personal and account login credentials, as well as bank card details. According to Marina Probets, an Internet analyst and expert at Gazinformservice, such tricks primarily target tired travelers, the elderly, families with children, and those who do not know the language or local realities well, in short, anyone who looks confused or in a hurry.
"The danger is that you can lose not only money from your card, but also personal data, access to airline accounts (miles, bonuses), and at worst, infect your device and run into blackmail,— the specialist warns. — Sometimes it ends with an empty score or problems when crossing the border. The main blow is to your wallet and nerves when, instead of resting, you deal with the bank.
How to protect yourself from fraud schemes at airports
In order to protect themselves from fraud schemes directed against passengers at airports, experts interviewed by Izvestia advise following certain cybersecurity rules. Dmitry Zubarev notes that the first thing to do is to be vigilant.
— When clicking on links after scanning the QR code, you need to make sure that you got exactly to the site you intended, and not to a copy of it, — he says. — The rules here are the same as when clicking on links from emails or messages on social networks.
To protect against attacks over wireless networks, the expert advises using only official Wi-Fi access points provided by the airport or organizations located on its territory. In particular, to do this, you need to check the names of the networks and disable the automatic connection option.
You should also carefully check website addresses before entering personal and payment data and use a security solution that warns you of an attempt to access a phishing page, advises Dmitry Galov. Dmitry Zubarev adds that for maximum data protection, it is important to set up two-factor authentication in advance for all important accounts.
— It is also better to resolve the issue of mobile communication before departure, for example, to purchase and activate eSIM in advance through the official website or the application of a trusted service, — explains Dmitry Galov. — This will allow you to use the mobile Internet immediately after arrival and not search for open Wi-Fi networks or tariffs on random websites in a hurry. When purchasing an eSIM, it is important to check the website address and download applications only from official stores.
Переведено сервисом «Яндекс Переводчик»