Theguardian United Airlines Flight Returns Due to Bluetooth Device Name Security Threat
Article Content
- •A United Airlines flight returned to Newark after a Bluetooth device name prompted a security alert.
- •The device's name reportedly included the word 'BOMB', leading to urgent crew actions.
- •Passengers were evacuated and rescreened before boarding a replacement flight.
On May 31, 2026, a United Airlines flight from Newark to Palma de Mallorca was forced to return midair due to a potential security threat. The incident arose when a passenger's Bluetooth device was identified with a name that included a threatening four-letter word, later reported to be 'BOMB'. The flight, carrying 190 passengers and 12 crew members, departed at 6 p.m. and returned to Newark at 9:37 p.m. after crew members communicated with the airline's operations center. Passengers were evacuated and rescreened by TSA and Customs before boarding a replacement flight. This incident is part of a series of recent security-related events involving United Airlines flights, including another diversion due to an unruly passenger. The airline declined to provide specific details about the incident.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (15)
Following this threat?
Track United Airlines in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…