The security breach within Interrail’s systems resulted in unauthorized access to customer data.
During our investigation, we learned that data copied during the security incident had been offered for sale on the dark web and a sample dataset had been published on Telegram – an online messaging platform. Customers whose personal data was included in the sample dataset were informed directly where contact details were available to us.
Following our discovery of the incident, we secured our systems with the support of external cybersecurity specialists. We have also taken steps to enhance our existing security measures to help prevent something like this from happening again