Menu
Browse

Air Serbia

Primary URL Location Industry
www[.]airserbia[.]com
Country Serbia
Transportation Icon
Transportation
Profile

Air Serbia is the flag carrier airline of Serbia. It provides scheduled passenger and cargo air transport services. It operates a fleet of aircraft serving domestic, regional, and international routes. It connects Belgrade with destinations across Europe, the Middle East, North Africa, and beyond. It also offers ancillary services such as travel insurance, car rentals, and loyalty programs.

As the national carrier, Air Serbia holds a concession from the Serbian government to operate international flights under the country's civil aviation regulations. It participates in codeshare agreements with other airlines to expand its network. The airline emphasizes safety and service quality. It maintains certifications such as IATA Operational Safety Audit (IOSA) membership. Its hub at Belgrade Nikola Tesla Airport enables efficient connections for transfer passengers.

Air Serbia employs a diverse workforce including pilots, cabin crew, engineers, and administrative personnel. These staff members are involved in flight operations, cabin service, aircraft maintenance, ground handling, and corporate functions. The airline invests in training programs to maintain operational proficiency and safety standards. It also engages in community outreach and sponsorship initiatives tied to Serbian culture and tourism. Continuous improvement efforts are guided by performance metrics and regulatory audits.

In July 2025, Air Serbia experienced a cyberattack that compromised its internal systems. The attack delayed the distribution of staff payslips even though salaries had been paid. The airline’s IT team warned employees about the incident and initiated password resets. Security‑scanning software was deployed, general internet access was removed, and data centers were moved to a demilitarized zone. A new VPN client was installed amid multiple waves of credential resets. Employees were instructed to leave workstations locked but accessible so administrators could continue remediation. Investigators noted a deep breach of Active Directory, with the blue team unable to fully eradicate the threat due to missing logs. Infostealer malware was suspected as a possible vector, although no ransom demand was reported. The incident highlighted the importance of robust logging and network segmentation for incident response. Post‑event, the airline continued to monitor systems for residual threats and reinforced its cybersecurity policies.

Incidents
Linked incidents available to members
1 incident