Cyber Disruptions in Aviation Infrastructure
The CrowdStrike Outage
Copyright (c) 2026 Paráda István

This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License.
Abstract
This paper examines the intersection between civilian aviation cyber incidents and military
logistics resilience, focusing on the systemic implications of the 2024 CrowdStrike global outage. Between 2018 and 2025, a series of airport IT and cybersecurity failures – ranging from ransomware to defence software malfunctions – exposed the vulnerabilities of dualuse infrastructures that serve both civil and military air mobility. The 2024 CrowdStrike event, which disrupted millions of systems worldwide, revealed the operational fragility of shared digital dependencies in air logistics networks. Drawing on data from FAA, ICAO and ENISA, this analysis identifies key lessons for defence logistics planners and cybersecurity policymakers seeking to enhance resilience against cascading failures.
Keywords:
How to Cite
References
BARRETT, Michael (2024): Denmark Was Disrupted on Friday by a Global IT Outage Connected to a Glitched Windows Software Update, as the Effects of the Outage Rippled across Europe. The Local, 19 July 2024. Online: https://www.thelocal.dk/20240719/how-is-global-it-outage-affecting-denmark#:~:text=Danish%20rail%20operator%20DSB's%20website%20is%20down,as%20the%20effects%20of%20the%20outage%20rippled
BASIT AJMAL, Abdul – KHAN, Shawal – JABEEN, Farhana (2022): Defeating Modern Day Anti-Viruses for Defense Evaluation. 2022 International Conference on Frontiers of Information Technology, 255–260. Online: https://doi.org/10.1109/FIT57066.2022.00054
BHARGAVA, Amit Kumar (2024): Cybersecurity in Aerospace: A Military Perspective. Blue Yonder, 1(1). Online: https://journals.capsindia.org/index.php/byj/article/view/48/47
BOVENZI, Antonio – LOPEZ, Javier Alonso – YAMADA, Hiroshi – RUSSO, Stefano – TRIVEDI, Kishor S. (2013): Towards Fast OS Rejuvenation: An Experimental Evaluation of Fast OS Reboot Techniques. 2013 IEEE 24th International Symposium on Software Reliability Engineering, 61–70. Online: https://doi.org/10.1109/ISSRE.2013.6698905
COULTER, Martin (2024): CrowdStrike Chaos Could Prompt Rethink among Investors, Customers. Reuters, 20 July 2024. Online: https://www.reuters.com/technology/cybersecurity/crowdstrike-chaos-could-prompt-rethink-among-investors-customers-2024-07-19/
CrowdStrike (2024): Preliminary Post Incident Review (PIR): Content Configuration Update Impacting the Falcon Sensor and the Windows Operating System (BSOD). CrowdStrike, 24 July 2024. Online: https://www.crowdstrike.com/en-us/blog/falcon-content-update-preliminary-post-incident-report/
Cyble (2020): Cyble SFO Struck by a Web Compromise. Cyber News, 13 April 2020. Online: https://cyble.com/blog/sfo-struck-by-a-web-compromise/
DOS SANTOS, Caio A. R. – MATIAS, Rivalino Jr. (2017): An Empirical Study on Patterns of Failure Causes in a Mass-market Operating System. Proceedings of the ACM Symposium on Applied Computing, 1542–1547. Online: https://doi.org/10.1145/3019612.3019740
DOS SANTOS, Caio A. R. – PRINCE, Marcela A. – MATIAS, Rivalino Jr. – FONSECA MACIEL, Vinicius (2018): Reliability Assessment of Commercial Off-the-shelf Operating System Software: An Empirical Study. Brazilian Symposium on Computing Systems Engineering, 201–206. Online: https://doi.org/10.1109/SBESC.2018.00038
ENISA (2023): ENISA Threat Landscape 2021–2022. Online: https://doi.org/10.2824/553997
ENISA (2024): ENISA Threat Landscape 2024. Online: https://doi.org/10.2824/0710888
Federal Aviation Administration (FAA) (2024): After Action Report on January 2023 Notice to Air Missions Database Failure. Online: https://www.governmentattic.org/55docs/FAAaarJan2023NTAMdbfail2023.pdf
HAIG, Zsolt – KOVÁCS, László (2012): Kritikus infrastruktúrák és kritikus információs infrastruktúrák [Critical Infrastructures and Critical Information Infrastructures]. Budapest: Nemzeti Közszolgálati Egyetem. Online: https://hhk.uni-nke.hu/document/hhk-uni-nke-hu/kovasz-tanulmany.pdf
HALLIWELL, Jeff – CHAMBERS, Sarah – CROPPER, Phil – FOULSHAM, Mark (2024): Independent Review of NATS (En Route) Plc’s Flight Planning System Failure on 28 August 2023. Online: https://www.caa.co.uk/publication/download/23337
HUNORFI, Péter – PARÁDA, István – FARKAS, Tibor (2024): Kiberbiztonsági kihívások a légi közlekedésben – Kronológiai folyamat a Boeing elleni kibertámadások tükrében [Cybersecurity Issues in Aviation – Timeline of Cyber Crimes against Boeing]. Hadmérnök, 19(1), 101–120. Online: https://doi.org/10.32567/hm.2024.1.6
ICAO (2025): Doc 10213 — Unrestricted. Global Cyber Risk Considerations. Online: https://www.icao.int/sites/default/files/sp-files/aviationcybersecurity/Documents/Doc-10213-Unedited-Global-Cyber-Risk-Considerations.EN_.pdf
JOHNSON, Chris W. (2013): Lessons from Major Incidents Influencing and Influenced by Telecoms Failures. In THÉRON, Paul – BOLOGNA, Sandro (eds.): Critical Information Infrastructure Protection and Resilience in the ICT Sector. Hershey: IGI Global, 61–92. Online: https://doi.org/10.4018/978-1-4666-2964-6.ch004
JOLLY, Jasper (2019): Passenger Anger as Tens of Thousands Hit by BA Systems Failure. The Guardian, 7 August 2019. Online: https://www.theguardian.com/business/2019/aug/07/british-airways-it-glitch-causes-disruption-for-passengers-delays
LUCAS, Rebecca – EKSTRÖM, Thomas – FUSARO, Paola – HASTINGS ROER, Elizabeth – RETTER, Lucia (2024): Toward Defense Supply Chain Disruption Management. A Research Agenda for Defense Supply Chain Resilience. RAND Research Report. Online: https://www.rand.org/content/dam/rand/pubs/research_reports/RRA2500/RRA2504-1/RAND_RRA2504-1.pdf
MCCREIGHT, Robert (2019): Grid Collapse Security, Stability and Vulnerability Issues: Impactful Issues Affecting Nuclear Power Plants, Chemical Plants and Natural Gas Supply Systems. Journal of Homeland Security and Emergency Management, 16(1). Online: https://doi.org/10.1515/jhsem-2018-0021
NOË, Nyala – TUZOVIC, Emina – MCARTHUR, Frederik S. – THOMPSON CARROLL, Angus (2021): Improving Loss Prevention in High Hazard Industries Through the Evaluation of Safety Culture and Error Traps from Structured and Unstructured Data Using Machine Learning. Institution of Chemical Engineers Symposium Series, (168). Online: https://www.icheme.org/media/27736/hazards-31-paper-40-noe.pdf
NOLEN, Billy (2023): The Federal Aviation Administration’s NOTAM System Failure and its Impacts on a Resilient National Airspace. Statement of Billy Nolen, Acting Administrator Federal Aviation Administration Hearing before the United States Senate Committee on Commerce, Science, and Transportation Notice to Air Missions System, February 15, 2023. Online: https://www.transportation.gov/federal-aviation-administrations-notam-system-failure-and-its-impacts-resilient-national-airspace
NOWAKOWSKI, Tomasz – MŁYŃCZAK, Marek – JODEJKO-PIETRUCZUK, Anna – WERBIŃSKA-WOJCIECHOWSKA, Sylwia eds. (2015): Safety and Reliability. Methodology and Applications. Boca Raton: CRC Press. Online: https://doi.org/10.1201/b17399
PAGANINI, Pierluigi (2025): Safepay Ransomware Group Claims the Hack of Professional Video Surveillance Provider Xortec. Security Affairs, 26 October 2025. Online: https://securityaffairs.com/183868/malware/safepay-ransomware-group-claims-the-hack-of-professional-video-surveillance-provider-xortec.html
PARÁDA, István – TÓTH, András (2024): A NATO katonai légi szállítási képességek kibervédelmi aspektusai [Cybersecurity Challenges for NATO Military Air Transport Operations]. Hadmérnök, 19(4), 167–182. Online: https://doi.org/10.32567/hm.2024.4.12
PINHEIRO, Ricardo – LIMA, Sidney – FERNANDES, Sergio – SILVA, Sthéfano H. M. T. (2019): Next Generation Antivirus Applied to Jar Malware Detection Based on Runtime Behaviors Using Neural Networks. 2019 IEEE 23rd International Conference on Computer Supported Cooperative Work in Design, 28–32. Online: https://doi.org/10.1109/CSCWD.2019.8791864
ROCKWELL, Mark (2019): Software Bug Caused CBP Airport System Outage. FCW, 19 August 2019. Online: https://www.nextgov.com/modernization/2019/08/software-bug-caused-cbp-airport-system-outage/210982/
ROSMAN, Rebecca (2024): Disruptions Continue after an IT Outage Affects Millions around the Globe. NPR, 20 July 2024. Online: https://www.npr.org/2024/07/20/g-s1-12487/crowdstrike-microsoft-outage-update
SUNDARAM, Mani (2021): Akamai Summarizes Service Disruption. Akamai, 22 July 2021. Online: https://www.akamai.com/blog/news/akamai-summarizes-service-disruption-resolved
Thales (2025): Aviation Sector Sees 600% Year-on-year Increase in Cyberattacks. Online: https://www.thalesgroup.com/en/news-centre/press-releases/aviation-sector-sees-600-year-year-increase-cyberattacks
TRAYNOR, Orlaith (2025): The Global Impact of Aviation Cyberattacks. Online: https://cybelangel.com/blog/the-global-impact-of-aviation-cyberattacks/
UKWANDU, Elochukwu – BEN-FARAH, Mohamed A. – HINDY, Hanan – BURES, Miroslav – ATKINSON, Robert – TACHTATZIS, Christos – ANDONOVIC, Ivan – BELLEKENS, Xavier (2022): Cyber-Security Challenges in Aviation Industry: A Review of Current and Future Trends. Information, 13(3). Online: https://doi.org/10.3390/info13030146
WESTON, David (2024): Helping our Customers through the CrowdStrike Outage. Official Microsoft Blog, 20 July 2024. Online: https://blogs.microsoft.com/blog/2024/07/20/helping-our-customers-through-the-crowdstrike-outage/
ZANNI, John (2018): Ransomware Attack against Bristol Airport Shows Need for Smart, Secure Digital Infrastructure in Transportation. Acronis, 19 September 2018. Online: https://www.acronis.com/en/blog/posts/ransomware-attack-against-bristol-airport-shows-need-smart-secure-digital-infrastructure/