Data Breaches

UK Train Operator LNER Warns Customers of Data Breach

LNER said the security incident involved a third-party supplier and resulted in contact information and other data being compromised.

LNER data breach

British train operator LNER (London North Eastern Railway) has disclosed a data breach impacting customer information. 

The company, which is in charge of many long-distance passenger services on the East Coast Main Line, revealed that hackers gained access to files managed by an unnamed third-party supplier.

The compromised information includes customer contact details and some information on previous journeys. 

However, LNER highlighted that banking, payment card, and password information have not been exposed as the impacted third-party does not have access to such information. 

It also pointed out that the incident has had no impact on ticket sales and train operations.

“Please be cautious of unsolicited communications, especially those asking for personal information. If in doubt, do not respond,” LNER told customers.

Advertisement. Scroll to continue reading.

No additional information has been shared. It’s unclear whether the third-party supplier was specifically targeted or it was one of the multiple victims of a large-scale campaign, such as the recent Salesforce-Salesloft attack.

Last year, police in the UK launched an investigation after a ‘hack’ led to anti-Islam messages being displayed to people who were trying to use the Wi-Fi service at the country’s biggest railway stations. 

The probe showed that an employee of the company providing railway Wi-Fi services was behind the incident. 

Related: Train Brakes Can Be Hacked Over Radio—And the Industry Knew for 20 Years

Related: Hacktivist Sentenced to 20 Months of Prison in UK

Related: Four Arrested in UK Over M&S, Co-op Cyberattacks

Related: UK’s Ransomware Payment Ban: Bold Strategy or Dangerous Gamble?

Related Content

Data Breaches

Hackers compromised the Brevo marketing platform and used that access to send phishing emails to users of Trezor, BitBox, and CoinTracking.

Data Breaches

A misconfigured test server containing engineering material, including internal configurations, was accessed by threat actors.

Data Breaches

In June 2026, hackers stole personal, health, and insurance information from AdaptHealth’s systems.

Data Breaches

Hackers stole the information of students, teachers, staff, and parents/guardians from a self-hosted Metabase instance.

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Data Breaches

The company has notified the SEC that hackers accessed patient, employee, provider, business, and financial information.

Data Breaches

Hackers stole personal and health information from the healthcare technology company’s AWS infrastructure.

Data Breaches

The ShinyHunters extortion group has claimed the theft of 284 million records from the company’s systems.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version