The California Office of the Attorney General reported a data breach involving Amtrak on May 28, 2020. The breach occurred on April 16, 2020, and unauthorized access was gained to Amtrak Guest Rewards accounts, potentially exposing usernames and passwords, but not financial data, credit card information, or Social Security numbers. The number of individuals affected is currently unknown.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-190440
TPRM report: https://www.rankiteo.com/company/amtrak
"id": "amt329072625",
"linkid": "amtrak",
"type": "Breach",
"date": "4/2020",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'industry': 'Transportation',
'location': 'United States',
'name': 'Amtrak',
'type': 'Organization'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'type_of_data_compromised': ['usernames', 'passwords']},
'date_detected': '2020-04-16',
'date_publicly_disclosed': '2020-05-28',
'description': 'Unauthorized access to Amtrak Guest Rewards accounts, '
'potentially exposing usernames and passwords.',
'impact': {'data_compromised': ['usernames', 'passwords']},
'references': [{'date_accessed': '2020-05-28',
'source': 'California Office of the Attorney General'}],
'title': 'Amtrak Data Breach',
'type': 'Data Breach'}