Latest
Amtrak data breach exposes millions of customer records
Booking a train ticket is usually something most people don’t think twice about. Now it could come with real privacy risks after a reported data exposure tied to Amtrak.
A newly surfaced dataset linked to the company has appeared on Have I Been Pwned, a widely used site that tracks and verifies data breaches, suggesting customer information may now be circulating online. The company has not confirmed the full scope, but the situation is already drawing attention from security researchers.
For travelers, the bigger issue isn’t just what was taken. It is how that data can be used next.
Sign up for my FREE CyberGuy Report
149 MILLION PASSWORDS EXPOSED IN MASSIVE CREDENTIAL LEAK
The breach was added to Have I Been Pwned on April 17, 2026, after a dataset attributed to Amtrak appeared online. According to that listing, the dataset includes more than 2.1 million unique accounts.
The exposed information listed by Have I Been Pwned includes email addresses, names, physical addresses and customer support records.
Separate reports suggest the total number of records could be significantly higher, with some estimates reaching up to 9.4 million, though that figure has not been confirmed by Amtrak.
Support interactions can reveal travel habits, preferences and past issues. That gives attackers more context to work with.
The group linked to the attack, ShinyHunters, has a pattern. They often target cloud-based customer systems, especially platforms like Salesforce.
These systems store huge amounts of customer data in one place. That makes them efficient for businesses and valuable for attackers.
Attacks like this often involve exploiting access to cloud-based customer relationship management (CRM) environments rather than breaching internal networks directly.
In many cases, the breach does not require breaking into a company’s internal network. Instead, attackers exploit weak access controls, misconfigured settings or compromised credentials tied to cloud services.
Once inside, they can extract large datasets quickly and demand payment before releasing the data publicly.
Not all data breaches carry the same level of risk. This one stands out because of the type of information involved.
Basic contact details can already be used for spam. Add customer service history, and the situation changes. Attackers can reference real interactions to make their messages feel legitimate.
You might get an email that mentions a past trip, a refund request or a delayed train. It looks familiar. That is what makes it dangerous.
These tailored phishing attempts are far more convincing than generic scams.
HOW SCAMMERS BUILD A PROFILE ON YOU USING DATA BROKERS
If your data is part of this breach, the immediate risk isn’t someone logging into your account. The bigger concern is impersonation.
Attackers can use your information to build trust quickly. They may pose as Amtrak support, a travel partner or even a financial institution tied to a booking.
That increases the chance you click a link, share more details or approve a transaction without realizing what is happening.
Even if you have never had an issue before, this kind of exposure changes your risk profile.
We reached out to Amtrak for comment, but did not hear back before our deadline.
This breach highlights a larger issue with how companies manage data today. Many rely heavily on cloud platforms to store and organize customer information. These tools are efficient, but they also concentrate risk in one place.
A single misconfiguration or compromised login can open the door to millions of records.
As more businesses move to software-as-a-service (SaaS) platforms, attackers are following. The pattern is becoming more common, not less.
To see if your email was affected, visit Have I Been Pwned at haveibeenpwned.com. It is the first and official source for this newly added dataset.
INSURANCE DATA BREACH EXPOSES SENSITIVE INFO OF 1.6 MILLION PEOPLE
If your data may be part of this breach, a few smart moves now can lower your risk and help you stay ahead of scams that often follow.
If you reuse passwords, this is the moment to change that. A single leaked password can unlock multiple accounts. Use a password manager to generate and store complex passwords so you are not relying on memory or repeating the same login. Start with your email account first, since it can be used to reset passwords across many of your other accounts. Check out the best expert-reviewed password managers of 2026 at CyberGuy.com.
Two-factor authentication (2FA) adds a second layer of protection. Even if someone gets your password, they still need a code from your phone or app. Focus on email, banking and travel accounts first since those are common targets after breaches.
Be extra cautious with emails or messages that reference past trips or support requests. That level of detail can make scams feel real. Avoid clicking links or downloading attachments unless you are certain of the source. When in doubt, go directly to the company’s official website.
Check your bank accounts and credit cards regularly for unusual charges. Look for login alerts or password reset notifications you did not request. The faster you catch something, the easier it is to contain.
Strong antivirus software does more than scan for viruses. It can block malicious links, detect suspicious downloads and stop phishing attempts before they reach you. Keeping your devices protected adds an important layer between you and attackers trying to exploit stolen data. Get my picks for the best 2026 antivirus protection winners for your Windows, Mac, Android and iOS devices at CyberGuy.com.
Data brokers collect and sell your personal information, which increases your exposure after a breach. A data removal service can help reduce how much of your information is circulating online and make it harder for scammers to build detailed profiles about you. Check out my top picks for data removal services and get a free scan to find out if your personal information is already out on the web by visiting CyberGuy.com.
Get a free scan to find out if your personal information is already out on the web: CyberGuy.com/FreeScan
An identity monitoring service can track your personal information across databases and alert you to suspicious activity. That includes new accounts opened in your name or signs that your data is being misused. See my tips and best picks on Best Identity Theft Protection at CyberGuy.com
A credit freeze prevents anyone from opening new accounts in your name without your approval. It is one of the most effective ways to stop identity theft after a breach. You can place a freeze for free with the major credit bureaus and lift it anytime when needed.
The Amtrak breach is still unfolding, and key details remain unclear. What is clear is the direction these attacks are heading. They are becoming more targeted, more personal and harder to spot. For consumers, that means staying alert even when something looks familiar. For companies, it means tightening controls around the systems that hold the most sensitive data. You do not need to panic, but you do need to pay attention.
With breaches like this happening again and again, are companies doing enough to protect your personal information? Let us know by writing to us at CyberGuy.com.
Sign up for my FREE CyberGuy Report
Copyright 2026 CyberGuy.com. All rights reserved.
Latest
Trump Humiliates Top UK Leader At G7 With Chilling Move
President Donald Trump arrived at the G7 summit this week once again demonstrating why world leaders continue to look to Washington for leadership on the most pressing international issues.
While European leaders initially planned to focus discussions on Ukraine, trade, migration, and economic concerns, attention quickly shifted to Trump’s newly announced framework agreement with Iran—a diplomatic breakthrough that could reshape stability in the Middle East and strengthen global energy markets.
The president confirmed that both he and Vice President JD Vance electronically signed a memorandum of understanding with Iran on Sunday. Iranian Parliament Speaker Mohammad Bagher Qalibaf signed on behalf of Tehran.
Administration officials emphasized that the agreement represents only the first stage of a broader negotiation process designed to permanently address concerns about Iran’s nuclear ambitions while protecting American and allied interests.
“We’ll be releasing the text this week,” Vance said during a television interview on Monday.
“What everybody will see is that Iran doesn’t get a dime of money unless they perform their obligations.”
The vice president’s comments directly challenged media reports suggesting the agreement included hundreds of billions of dollars in reconstruction funding for Iran.
Instead, administration officials stressed that any future economic benefits would be entirely contingent on Iran fulfilling strict requirements established by the United States and its allies.
Vance dismissed reports of massive direct payments as misinformation and explained that any economic relief would primarily come through sanctions adjustments tied to verified compliance.
According to officials, Iran would be required to permanently abandon its nuclear weapons ambitions, eliminate enriched nuclear material stockpiles, and submit to extensive international inspections before receiving any meaningful economic benefits.
“So long as they honor their end of the obligation,” Vance explained, Gulf nations could potentially participate in reconstruction efforts only after Iran demonstrates full compliance with the agreement.
The framework marks a significant departure from years of escalating tensions that repeatedly threatened to destabilize the region and disrupt global energy supplies.
Administration officials also announced that the Strait of Hormuz—one of the most strategically important shipping routes in the world—is expected to fully reopen following the formal signing ceremony scheduled for Friday in Geneva.
The recent disruptions in the waterway have contributed to uncertainty in global energy markets and increased economic pressure on nations around the world.
British Prime Minister Keir Starmer acknowledged the importance of restoring normal operations in the strait.
“The strait being closed has had an impact on our economy and an impact on every household across the country,” Starmer said.
The British leader suggested that the United Kingdom could potentially assist with demining operations if necessary.
The summit also served as another reminder of America’s dominant role on the world stage under Trump’s leadership. While European leaders sought greater involvement in ongoing negotiations surrounding both Iran and Ukraine, much of the summit’s focus remained squarely on Trump’s diplomatic initiatives and high-profile meetings.
One particularly revealing moment occurred when Starmer appeared to be caught on a hot microphone asking whether Trump was holding another meeting elsewhere after the president met with French President Emmanuel Macron and Ukrainian President Volodymyr Zelensky.
The incident sparked speculation in British media that Starmer had been sidelined during portions of the summit as world leaders sought opportunities to engage directly with the American president.
Starmer dismissed suggestions that he had been snubbed.
“We had very productive, very good conversations,” Starmer said.
Nevertheless, observers noted that the summit’s most significant developments centered on Trump’s diplomatic efforts rather than the priorities advanced by many European leaders.
The president also met separately with Zelensky as he continues advocating for a negotiated resolution to the war between Russia and Ukraine, a position that has increasingly gained attention among leaders seeking an end to the prolonged conflict.
Meanwhile, administration officials released additional details regarding the Iran framework agreement.
The United States will maintain its current military posture throughout a 60-day negotiation period while talks continue. Officials repeatedly emphasized that any economic concessions will remain tied to verified Iranian compliance and that enforcement mechanisms will remain firmly in place.
The administration’s approach reflects Trump’s longstanding strategy of combining diplomacy with strength—pursuing peace agreements while ensuring America retains leverage throughout the negotiation process.
As negotiations move forward, the agreement is being viewed by many observers as a significant diplomatic achievement that could reduce tensions in the Middle East, strengthen global economic stability, and further underscore America’s leadership role on the international stage.
Latest
FBI Raids George Soros — Major Plot Narrowly Thwarted
Federal investigators executed a major raid Thursday on a Soros-funded voter mobilization organization in Ohio as part of an ongoing fraud investigation, marking the latest effort by the Trump administration to crack down on alleged election-related misconduct.
According to reports from MS Now, FBI agents raided the headquarters of the Ohio Organizing Collaborative (OOC) on June 11 and conducted interviews with individuals connected to the organization across the state. Some of those contacted reportedly received subpoenas or were asked to surrender electronic devices.
Sources familiar with the matter later told CBS News that the law enforcement activity was connected to a fraud-related investigation.
The operation represents another significant step in President Donald Trump’s broader push to investigate allegations of voter fraud and election integrity violations. Conservatives have long argued that such cases were not aggressively pursued by previous administrations and have welcomed increased federal scrutiny of organizations involved in voter registration and mobilization efforts.
The Ohio Organizing Collaborative is a nonprofit organization that works closely with Democratic Party-aligned causes in Ohio, focusing on voter registration, turnout efforts, and ballot initiatives. The group has received substantial financial support from major liberal donor networks, including organizations tied to billionaire George Soros.
While federal authorities have remained tight-lipped about the details of the investigation, the Department of Justice emphasized that the search warrants were approved through the normal judicial process.
“Search warrants are authorized by a judge, and anything said by any organization or others in the media is unfounded speculation, as the target of any investigation is not privy to the search warrant affidavit until after indictment,” a DOJ official told Fox News.
Financial disclosures show OOC has become a major force in Ohio politics. The organization reported more than $10 million in revenue during 2024 and has spent heavily on ballot initiatives and political campaigns.
Last year alone, OOC spent $250,000 opposing a Republican-backed effort related to abortion policy in Ohio and another $300,000 fighting a GOP redistricting initiative.
The group’s financial backing comes from a network of prominent Democratic-aligned organizations, including the Soros family’s philanthropic entities, the New Venture Fund, the Tides Foundation, and major labor unions such as the American Federation of Teachers and the Service Employees International Union.
Records show the Soros family’s Foundation to Promote Open Society provided approximately $1.9 million to OOC between 2019 and 2020. In addition, the Open Society Action Fund contributed $1 million to OOC’s affiliated organization in 2021 and another $1 million in 2023.
OOC leaders have sharply criticized the investigation, accusing the Trump administration of using federal law enforcement to target political opponents.
The organization has faced controversy before. In 2017, a paid canvasser associated with OOC pleaded guilty for his role in a fraudulent voter registration scheme, a case that continues to draw attention amid the current federal investigation.
OOC board member Prentiss Haney questioned the timing of the operation.
“How can they distract and intimidate civil rights leaders and voters and community leaders who are helping people get registered to vote, and create a national spectacle about it?” Haney told MS Now.
“That is the only reason why they would choose to do that, do it now, in the middle of a contested political election in the state. There’s no other reason. They have no evidence of that,” Haney added.
The investigation also comes after President Trump publicly criticized George Soros and his son, Alexander Soros, earlier this year.
“George Soros, and his wonderful Radical Left son, should be charged with RICO because of their support of Violent Protests, and much more, all throughout the United States of America,” Trump wrote on Truth Social.
“We’re not going to allow these lunatics to rip apart America any more, never giving it so much as a chance to ‘BREATHE,’ and be FREE. Soros, and his group of psychopaths, have caused great damage to our Country! That includes his Crazy, West Coast friends. Be careful, we’re watching you! Thank you for your attention to this matter!” Trump added.
As federal investigators continue their work, the raid is likely to intensify the national debate over election integrity, political activism, and the role of powerful donor-funded organizations in American elections.
Latest
Bone-Chilling Details Emerge From White House Terror Plot
Federal authorities say they foiled a chilling terror plot targeting Sunday’s UFC Freedom 250 event on the White House South Lawn, preventing what investigators believe could have been one of the most devastating attacks on the nation’s capital in recent memory.
According to officials, five suspects are already in custody after the FBI uncovered a multi-phase attack plan that allegedly included explosive-laden drones, sniper teams, and an attempted assault on the White House itself.
The plot was reportedly aimed at the historic UFC event attended by President Donald Trump and thousands of supporters. Authorities say the attackers intended to use drones carrying explosives to strike buildings near the venue, creating chaos among attendees and forcing panicked crowds into predetermined kill zones where snipers would allegedly open fire.
Investigators say the operation did not stop there. Officials revealed that a “second wave” of attackers allegedly planned to exploit the confusion and attempt to breach the White House gates.
FBI Director Kash Patel credited law enforcement agencies for stopping the threat before it could be carried out.
The scheme was “stopped cold” on June 10 after investigators executed a search warrant in Cincinnati, where the first arrest was made.
Federal court documents identify California resident Michael Alan Thomas as one of the alleged organizers behind the operation.
According to an arrest affidavit, Thomas told investigators he believed the federal government is controlled by elites who sacrifice and eat children, had ties to Jeffrey Epstein, and are protected by President Trump.
Authorities say some members of the group traveled to Fredericksburg, Virginia, on June 12 or June 13 to conduct preparations for the planned attack.
The investigation uncovered extensive communications among the suspects. After examining an iPhone linked to one of the individuals, federal agents reportedly discovered at least 23 users participating in discussions on the encrypted messaging application Signal.
Investigators say those conversations included detailed planning for what could have become a catastrophic attack. Screenshots recovered by federal agents allegedly show maps of the UFC event being circulated among participants, along with discussions regarding potential sniper positions.
Law enforcement officials also recovered rifles and ammunition during the investigation.
According to the affidavit, one suspect told investigators that the goal of the operation was to target “capitalist elites,” “billionaires” and politicians who had received support from the American Israel Public Affairs Committee, known as AIPAC.
Sources familiar with the investigation told Fox News correspondent David Spunt that all five suspects currently in custody are American citizens. At this time, authorities say they have found no evidence suggesting any foreign involvement in the alleged plot.
Following the arrests, Patel praised the coordinated efforts of federal, state, and local law enforcement agencies.
“While the result represented the best of investigative work, it was also nothing out of the ordinary for this law enforcement team — we are built to detect, respond to, and bring to justice those who threaten the lives of American citizens — particularly during large gatherings like the historic UFC 250 fight,” Patel later wrote on X.
The UFC Freedom 250 event marked a major celebration coinciding with President Trump’s 80th birthday and drew approximately 4,300 attendees, including 1,200 active-duty military service members.
Officials estimate another 80,000 to 85,000 fans attended a ticketed watch party on the Ellipse south of the White House, while thousands more gathered on the National Mall to watch the event on giant screens.
The successful disruption of the alleged attack underscores the significant security challenges surrounding high-profile public events and highlights what officials describe as the vigilance of law enforcement agencies tasked with protecting both President Trump and the tens of thousands of Americans who attended the historic celebration.
-
Economy2 months agoVance Leaves Meeting, Looks Straight Into Camera, Announces Stunning Arrest
-
Economy2 months agoAdam Schiff Facing 30 Years In Prison After Bank Records Leak
-
Economy2 months agoSupreme Curt Sides With Trump — He Can Remove The All
-
Economy2 months agoAll Hell Breaks Loose On Fox When Jesse Watters Asks Fetterman One Question
-
Economy2 months agoNBC Stops LIVE Broadcast — Breaks Big Trump News
-
Economy2 months agoTrump Pulls Off Miracle Of A Lifetime — It’s Permanently Open
-
Economy2 months agoSwalwell Facing Jail Time After Sickening New Video Leaks
-
Economy1 month agoBarack Obama Just Made Insane Announcement About His Marriage
