What is the Position Regarding the Use of GSM Mobile Phones to Comply with EASA ISMS requirements?

Specific Exposures and Threat Scenarios Malware/Ransomware Initial Access (Exploitation via device) General Ransomware Campaigns: Ransomware actors often gain initial access through phishing campaigns targeting aviation employees or by exploiting exposed VPN/RDP servers. Mobile devices are the primary target for phishing/social engineering attempts. Ransomware group LockBit demanded $200 million from Boeing in 2023. Attacks on airport…

Read more

Applying MEDA Tools to Real-World Cases and Developing Corrective Actions

Sofema Online (SOL) considers the key aspects related to achieving the best outcomes with Boeing MEDA. Introduction  The Boeing Maintenance Error Decision Aid (MEDA) is a structured process developed to identify the contributing factors to maintenance errors and events, with the goal of developing effective prevention strategies.  Its core philosophy is that people don’t intentionally make errors, and most…

Read more

Free Cybersecurity Training Added to EASA Flight & Ground Operations Learning Path Diploma

SofemaOnline (SOL) is excited to announce that the EASA Flight & Ground Operations Learning Path Diploma now features the Part 145 Cybersecurity Essentials course free of charge through the end of November 2025.   This comprehensive learning path is designed for aviation professionals working in, or preparing to enter, Flight and Ground Operations environments. The…

Read more

White Paper: Integrating MEDA into a Safety Management System

This white paper discusses the crucial elements, challenges, and best practices for integrating Maintenance Event Decision Aid (MEDA) into an organisational safety culture, effectively measuring its processes, and linking it to a robust Continuous Improvement cycle within a Safety Management System (SMS) 1. How to Embed MEDA into an Organisational Safety Culture Embedding MEDA into…

Read more