Amtrak data breach exposes 2.1M records, reports suggest larger leak


Booking a train ticket shouldn’t come with a side of data exposure, but that’s the situation Amtrak customers are now facing.

The rail service is dealing with a breach after hackers claimed to have accessed and released millions of customer records online. The exposed dataset was confirmed to contain at least 2.1 million unique accounts, although some reports indicate the total could be significantly higher. The breach includes personal details and customer service records, raising concerns for travelers and putting pressure on IT teams to secure cloud-based systems.

Read more…
Source: TechRepublic News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • TikTok fined €530M for EU data breach

    May 2, 2025

    TikTok has been hit with a €530 million penalty by the Irish Data Protection Commission (DPC) for violating EU privacy laws following a probe into the platform’s transfer of European user data to China. The watchdog found that the company breached the bloc’s data protection rules through unlawful transfers of European user data to China, giving ...

  • Dating app Raw exposed users’ location data and personal information

    May 2, 2025

    A security lapse at dating app Raw publicly exposed the personal data and private location data of its users, TechCrunch has found. The exposed data included users’ display names, dates of birth, dating and sexual preferences associated with the Raw app, as well as users’ locations. Some of the location data included coordinates that were specific ...

  • Millions of users possibly at risk after Ascension healthcare reveals new data breach, potentially linked to Cl0p ransomware

    May 1, 2025

    One of the biggest private healthcare systems in the US, Ascension, has notified patients that personally identifiable information (PII) including health data, was stolen in a previously unannounced attack affecting a former business partner in December 2024. The incident follows a previous ransomware attack in May 2024, in which the sensitive data of six million patients, ...

  • Email Attacks Drive Record Cybercrime Losses in 2024

    May 1, 2025

    The FBI’s Internet Crime Complaint Center (IC3) has released its 2024 Internet Crime Report. And it has revealed a record-breaking surge in cybercrime losses across the United States. Last year, total losses reached $16.6 billion, which is a 33% increase from the previous year. Email continues to be the most exploited attack vector, with cybercriminals using ...

  • Health insurance firm Blue Shield data breach exposed data of over 4.7 million members

    April 24, 2025

    Health insurance firm Blue Shield has revealed a data breach has exposed protected health data of over 4.7 million members. The information was leaked to Google’s analytics and advertisement platforms following a misconfiguration of Google analytics on Blue Shield sites. “On February 11, 2025, Blue Shield discovered that, between April 2021 and January 2024, Google Analytics ...

  • Over 1.6 million customers now hit in massive insurance data breach

    April 17, 2025

    More than 1.6 million people are now thought to have been affected by the May 2024 cyberattack at Landmark Admin, twice as many as originally thought. The company confirmed the news in an updated report filed with the Office of the Maine Attorney General. “The forensic investigation determined that data was encrypted and exfiltrated from Landmark’s ...