Amtrak
bd_aa83163522dec153 · schema v1 · pii pii-v1
Full breach record for Amtrak →4 incidents on fileOn April 16, 2020, Amtrak detected unauthorized access to certain Amtrak Guest Rewards accounts using compromised usernames and passwords. The incident occurred between April 16 and April 17, 2020. Amtrak terminated access within hours, reset passwords, and engaged cybersecurity experts. No financial data or SSNs were compromised. Affected customers were offered one year of Experian IdentityWorks.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 16, 2020
Begins
Apr 16, 2020
Discovered
May 28, 2020
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_1c6e0f35adb6d7e22020-05-28Verified
- Montana State AGbd_34e71fc916b78fe92020-05-29 · +1dCandidate
- Indiana State AGbd_b1a7c089ccb1fd5d2020-05-29 · +1dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.