Cyberattack Disrupts Amtrak Guest Rewards Accounts in Breach

Published:

Cyber Warriors Conclave — nine editions, one cyber safe nation

Recent Data Breach: Amtrak Guest Rewards Accounts Compromised

Amtrak, the national passenger rail service, recently disclosed a data breach that has left train travelers’ Guest Rewards accounts compromised. The breach occurred from May 15-18, when an unknown third party gained unauthorized access to a database containing account information.

The compromised data includes a treasure trove of sensitive information such as names, contact details, account numbers, birth dates, payment details, gift card information, and transaction histories. In some cases, hackers even took control of accounts and changed email addresses and passwords to lock out legitimate users.

Amtrak has taken steps to address the breach by resetting account passwords and email addresses for affected users. However, the exact number of impacted individuals has not been disclosed. The company is urging riders to rotate their passwords and implement multifactor authentication to prevent further unauthorized access.

This isn’t the first time Amtrak has experienced a data breach involving Guest Rewards accounts. In 2020, a similar incident occurred where personal information was viewed by unauthorized parties. Stuart Wells, Jumio CTO, emphasized the importance of implementing advanced verification technologies to protect consumer accounts from fraud.

As cyber threats continue to evolve, businesses must prioritize the security of user data by adopting robust identity verification systems. Biometric verification methods are highlighted as an effective way to hinder hackers and illegitimate users from gaining access to compromised accounts. This approach not only safeguards personal information but also serves as a powerful tool in combating fraud.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

GnuPG Vulnerability Allows Potential Bypass of Message Integrity Checks

GnuPG Vulnerability Allows Potential Bypass of Message Integrity Checks A recently discovered vulnerability in GnuPG has raised concerns regarding the integrity of messages encrypted with...

Russian National Indicted for Malware Campaign Infecting 80,000 Freelancers, Faces 20 Years in Prison

A Russian national has been indicted on multiple charges related to a malware campaign that infected the devices of over 80,000 individuals. Searzhudin Tamirlanovich...

GISEC Global 2026 to Host Cyber First Summit in Dubai, Addressing AI and Cybersecurity Challenges

The GISEC Global 2026 conference is set to take place from September 16 to 18 at the Dubai Exhibition Centre, Expo City Dubai, under...

Mirage Kitten Unveils NodeRabbit and PollCat, Its First Node.js and JavaScript Malware Families

Recent investigations into the activities of the cyber espionage group known as Mirage Kitten have revealed the emergence of two new malware families: NodeRabbit...