On January 29, 2026, Pacific Airlines, Vietnam’s Ho Chi Minh City-based low-cost carrier, appeared on the leak site of the coinbasecartel ransomware group. The listing indicates that internal files were exfiltrated during a ransomware attack on the airline’s systems. While the exact number of people affected remains unknown, anyone who has flown with the airline, used its booking portal, or had personal details stored in its reservation or customer-service databases could have information now in the hands of criminals.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
What Public Reporting Shows
Public reporting confirms that Pacific Airlines, formerly known as Jetstar Pacific until 2020, operates primarily from Tan Son Nhat International Airport. The coinbasecartel ransomware group added the company to its public leak site on January 29, 2026, claiming to have stolen internal files. Available reporting describes the exposed material as internal documents, though the precise volume and full list of data types have not been independently verified. No official statement from the airline detailing the breach scope or timeline has been widely published as of this writing.
Why This Matters for You and Your Family
When an airline suffers a breach, the data involved often includes names, addresses, phone numbers, email accounts, passport details, and payment information tied to bookings. If you or any member of your family has traveled with Pacific Airlines in recent years, these records could link directly to your home address and contact details. Criminals can combine this information with other leaks to build a profile that makes identity theft, targeted phishing, or even physical threats far easier. For families, a single breach can expose both parents and children if shared booking records or family travel accounts were used.
The Doxxing and Identity-Chain Implications
Credential leaks from travel companies frequently cascade into account takeovers elsewhere. A password reused from a Pacific Airlines booking portal can unlock email, social media, or gaming accounts. Once attackers control an email address tied to your name and phone number, they can reset credentials across dozens of services. This creates an identity chain that links your real-world details to online handles, making doxxing straightforward. Gaming accounts belonging to your children are especially vulnerable because kids often reuse simple passwords or email addresses that appear in family travel records.