Eurostar has contacted its customers warning them that a hacker had tried to access eurostar.com accounts using users’ login credentials between the 15th and 19th of October.
The high-speed railway operator has yet to confirm how many customers were impacted by the data breach or whether any data was stolen.
It did, however, confirm that credit card details and payment details were not compromised because the company does not store that information online.
Eurostar has reported the data breach to UK data watchdog, the Information Commissioner’s Office (ICO).
Automated attempt
In a statement to customers, Euroastar said: “We have taken this action as a precaution because we identified what we believe to be an unauthorised automated attempt to access eurostar.com accounts using your email address and password,” the company told customers.
“We’ve since carried out an investigation which shows that your account was logged into between the 15th and 19th October. If you didn’t log in during this period, there’s a possibility your account was accessed by this unauthorised attempt.”
Customers were instructed to change their Eurostar online account passwords and check their accounts for “anything unusual”.
It also suggested that customers update their login details on any other website where they use the same password.
A spokesperson for Eurostar said: “This email was sent after we identified what we believe to be an unauthorised automated attempt to access customer accounts, so as a precaution, we asked all account holders to reset their password. We deliberately never store any payment details or bank card information, so there is no possibility of those being compromised.”
The ICO ackowledged that it had received Eurostar’s data breach report, adding that it was making enquiries.






