American Airlines, Sabre Said to Be Hit in Hacks Backed by China
A group of China-linked hackers that has mowed through the databanks of major American health insurers and stolen personnel records of U.S. military and intelligence agencies has struck at the heart of the nation's air-travel system …
Context & Ripple Effects
This lands one week after sources told Bloomberg that Chinese hackers behind the OPM and Anthem breaches had also hit United Airlines and taken flight manifest data ([[a:831426]]). With American Airlines and now Sabre — the reservation system that sits behind much of U.S. air travel — the same intrusion set has moved from insurers and personnel files into the booking infrastructure itself.
The arc matters more than any single breach: reporting earlier this month traced the campaign to a deliberate effort to build a database on Americans that began with hacking travel records back in 2013 ([[a:830972]]. The Anthem attack was flagged as China-sponsored as far back as February, so each new name added to the list reads less like opportunism and more like collection against a defined target set.
First-order effects
- American Airlines and Sabre join United among breached carriers, meaning passenger and flight-record data at three of the most-used nodes of U.S. air travel is now reportedly in Chinese hands.
Second-order effects
- The combined haul changes what the data is worth: reporting a month later indicated China and Russia were cross-referencing OPM, Anthem, and other breaches to identify U.S. spies ([[a:832392]]) — travel manifests layered onto personnel and health files make those correlations sharper.
Third-order effects
- If the pattern holds — and the later Marriott breach, tied to the same intelligence effort alongside hotels and clearance files ([[a:936494]]), suggests it did — travel and hospitality systems become standing intelligence targets, forcing airlines and reservation platforms to treat security posture as a national-security issue rather than a compliance checkbox.
The trend: China-linked intrusions are consolidating from scattered breaches of insurers and agencies into a multi-year, multi-sector effort to assemble a database on Americans, with air-travel and hospitality records as core inputs.