{"id":45255,"date":"2026-04-09T18:43:18","date_gmt":"2026-04-09T10:43:18","guid":{"rendered":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/2026\/04\/09\/eurail-says-december-data-breach-impacts-300000-individuals\/"},"modified":"2026-04-09T18:43:18","modified_gmt":"2026-04-09T10:43:18","slug":"eurail-says-december-data-breach-impacts-300000-individuals","status":"publish","type":"post","link":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/2026\/04\/09\/eurail-says-december-data-breach-impacts-300000-individuals\/","title":{"rendered":"Eurail says December data breach impacts 300,000 individuals"},"content":{"rendered":"\n<p style=\"text-align:center\"><img loading=\"lazy\" decoding=\"async\" height=\"900\" src=\"https:\/\/www.bleepstatic.com\/content\/hl-images\/2026\/04\/09\/High-speed_train_Europe.jpg\" width=\"1600\" alt=\"Eurail says December data breach impacts 300,000 individuals\"><\/p>\n<p>Eurail B.V., a European travel operator that provides digital passes covering 33 national railways, says attackers stole the personal information of over 300,000 individuals in a December 2025 data breach.<\/p>\n<p>Eurail is a Netherlands-based company that sells Interrail and Eurail passes for multi-country train travel across Europe, passes that are also available to young Europeans through the EU&#8217;s <a href=\"https:\/\/youth.europa.eu\/news\/updated-data-security-incident-affecting-discovereu-travellers_en\" target=\"_blank\" rel=\"nofollow noopener\">DiscoverEU program<\/a>.<\/p>\n<p>When it disclosed the incident in February, the company said the attackers gained access to travelers&#8217; sensitive information, including full names, passport details, ID numbers, bank account IBANs, health information, and contact details (email addresses, phone numbers), after breaching its customer database.<\/p>\n<div align=\"center\" style=\"width:98%; margin:0 auto; text-align:center; padding:4px; background:#f0f0f0; border:1px solid #ccc; border-radius:6px;\">  <a href=\"https:\/\/www.adaptivesecurity.com\/demo\/security-awareness-training?utm_source=display_network&amp;utm_medium=paid_display&amp;utm_campaign=2026_04_display_bleepingcomputer&amp;utm_id=701Rd00000fE8REIA0&amp;utm_content=970x250\" rel=\"nofollow noopener\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/www.bleepstatic.com\/c\/a\/as-tour-the-platform-970-x250.jpg\" style=\"margin-top: 0px;\" alt=\"Eurail says December data breach impacts 300,000 individuals\"><\/a> <\/div>\n<p>Eurail also warned at the time that the threat actors had published a sample of the stolen data on Telegram and were attempting to sell it&nbsp;on the dark web.<\/p>\n<p>&#8220;The evidence showed that an unauthorized actor transferred files from our network on December 26, 2025,&#8221; the European train travel company <a href=\"https:\/\/oag.ca.gov\/system\/files\/Eurail_%20CA%20App%20%26%20Sample_0.pdf\" target=\"_blank\" rel=\"nofollow noopener\">said in breach notification letters<\/a> sent to affected individuals on March 27.<\/p>\n<p>&#8220;We reviewed the files involved and, on February 25, 2026, determined that they contained some of your information. The information included your name and passport number.&#8221;<\/p>\n<p>The same day, Eurail <a href=\"https:\/\/justice.oregon.gov\/consumer\/databreach\" target=\"_blank\" rel=\"nofollow noopener\">revealed in a filing<\/a> with the Office of Oregon&#8217;s Attorney General that the resulting data breach impacted 308,777 individuals.<\/p>\n<div style=\"text-align:center\">\n<figure style=\"display:inline-block\"><img loading=\"lazy\" decoding=\"async\" height=\"129\" src=\"https:\/\/www.bleepstatic.com\/images\/news\/u\/1109292\/2026\/Eurail_Oregon_data_breach_filing.jpg\" width=\"746\" alt=\"Eurail says December data breach impacts 300,000 individuals\"><figcaption><em>Eurail data breach filing with Oregon&#8217;s OAG (BleepingComputer)<\/em><\/figcaption><\/figure>\n<\/div>\n<p>&#8203;While Eurail said that it didn&#8217;t store financial information or passport photocopies on the compromised systems, the European Commission <a href=\"https:\/\/youth.europa.eu\/news\/updated-data-security-incident-affecting-discovereu-travellers_en#:~:text=What%20personal%20data%20may%20be%20involved\" target=\"_blank\" rel=\"nofollow noopener\">warned<\/a> in a separate alert that this type of data (as well as health information) may have been exposed for young travelers who received a Pass through the DiscoverEU program.<\/p>\n<p>Eurail told customers whose information was exposed in the breach to remain vigilant against potential phishing attacks and scams, and advised them to update their Rail Planner app account passwords and reset them on any other platform where they&#8217;re also used.<\/p>\n<p>The company added that customers should monitor their bank account activity and report any suspicious transactions to their bank as soon as possible.<\/p>\n<p>Last month,&nbsp;the&nbsp;European Commission also <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/european-commission-confirms-data-breach-after-europaeu-hack\/\" target=\"_blank\" rel=\"nofollow noopener\">confirmed a data breach<\/a> after the Europa.eu web platform was hacked in a cyberattack claimed by the&nbsp;ShinyHunters extortion gang.<\/p>\n<style> .ia_ad {     background-color: #f0f6ff;     width: 95%;     max-width: 800px;     margin: 15px auto;     border-radius: 8px;     border: 1px solid #d6ddee;     display: flex;     align-items: stretch;     padding: 0;     overflow: hidden; }  .ia_lef {     flex: 1;     max-width: 200px;     height: auto;     display: flex;     align-items: stretch; }  .ia_lef a {     display: flex;     width: 100%;     height: 100%; }   .ia_lef a img {     width: 100%;     height: 100%;          border-radius: 8px 0 0 8px;     margin: 0;     display: block; }  .ia_rig {     flex: 2;     padding: 10px;     display: flex;     flex-direction: column;     justify-content: center; }  .ia_rig h2 {     font-size: 17px !important;     font-weight: 700;     color: #333;     line-height: 1.4;     font-family: Georgia, \"Times New Roman\", Times, serif;     margin: 0 0 14px 0; }  .ia_rig p {     font-weight: bold;     font-size: 14px;     margin: 0 0 clamp(6px, 2vw, 14px) 0; }  .ia_button {     background-color: #FFF;     border: 1px solid #3b59aa;     color: black;     text-align: center;     text-decoration: none;     border-radius: 8px;     display: inline-block;     font-size: 16px;     font-weight: bold;     cursor: pointer;     padding: 10px 20px;     width: fit-content; }  .ia_button a {     text-decoration: none;     color: inherit;     display: block; }  @media (max-width: 600px) {     .ia_ad {         flex-direction: column;         align-items: center;     }      .ia_lef {         max-width: 100%;     }      .ia_lef a img {         border-radius: 8px 8px 0 0;     }       .ia_rig {         padding: 15px;         width: 100%;     }      .ia_button {         width: 100%; \tmargin: 0px auto;     } } <\/style>\n<div>\n<div>         <a href=\"https:\/\/hubs.li\/Q048zztN0\" target=\"_blank\" rel=\"noopener sponsored\">             <img decoding=\"async\" src=\"https:\/\/www.bleepingcomputer.com\/news\/security\/eurail-says-december-data-breach-impacts-300-000-individuals\/data:image\/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==\" data-src=\"https:\/\/www.bleepstatic.com\/c\/p\/picus-whitepaper.jpg\" alt=\"Eurail says December data breach impacts 300,000 individuals\"><\/a>     <\/div>\n<div>\n<h2><a href=\"https:\/\/hubs.li\/Q048zztN0\" target=\"_blank\" rel=\"noopener sponsored\">Automated Pentesting Covers Only 1 of 6 Surfaces.<\/a><\/h2>\n<p>Automated pentesting proves the path exists. BAS proves whether your controls stop it. Most teams run one without the other.<\/p>\n<p>This whitepaper maps six validation surfaces, shows where coverage ends, and provides practitioners with three diagnostic questions for any tool evaluation.<\/p>\n<p>           <button><a href=\"https:\/\/hubs.li\/Q048zztN0\" target=\"_blank\" rel=\"noopener sponsored\">Get Your Copy Now<\/a><\/button>     <\/div>\n<\/p><\/div>\n<div>\n<h3>Related Articles:<\/h3>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/european-commission-confirms-data-breach-after-europaeu-hack\/\">European Commission confirms data breach after Europa.eu hack<\/a><\/p>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/dutch-finance-ministry-takes-treasury-banking-portal-offline-after-breach\/\">Dutch Finance Ministry takes treasury banking portal offline after breach<\/a><\/p>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/dutch-ministry-of-finance-discloses-breach-affecting-employees\/\">Dutch Ministry of Finance discloses breach affecting employees<\/a><\/p>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/hackerone-discloses-employee-data-breach-after-navia-hack\/\">HackerOne discloses employee data breach after Navia hack<\/a><\/p>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/mazda-discloses-security-breach-exposing-employee-and-partner-data\/\">Mazda discloses security breach exposing employee and partner data<\/a><\/p>\n<\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p>Eurail B.V., a European travel operator that provides d [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[28],"tags":[],"class_list":["post-45255","post","type-post","status-publish","format-standard","hentry","category--bleepingcomputer"],"_links":{"self":[{"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/posts\/45255","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/comments?post=45255"}],"version-history":[{"count":0,"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/posts\/45255\/revisions"}],"wp:attachment":[{"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/media?parent=45255"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/categories?post=45255"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nuoya.nuoyayasuo.top\/index.php\/wp-json\/wp\/v2\/tags?post=45255"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}