Renfe and Adif hit by AI-powered cyberattack
–
Neutral summary
On Friday, September 25, Spanish state railway operator Renfe opened a technical investigation into a “cybersecurity incident” involving the theft of passenger data. According to the company, the attack originated on previously compromised servers of Adif, the state-owned rail infrastructure administrator, which were connected to Renfe’s networks. Preliminary inquiries indicate attackers accessed a “limited” volume of customer information, primarily names and email addresses, with no impact on banking or financial data. Renfe said its response was “immediate” and notified the relevant authorities. El Mundo reports the attack lasted several days, peaked on Thursday, and involved the theft of 500 gigabytes of data. Xataka reports the attack used artificial intelligence, a first against Spanish state administration. On Saturday, September 26, Adif said on social media that its websites were operational again and that no computer systems had been affected. Train services were never disrupted. Sources differ on the scale of the breach: Renfe and most outlets describe the data as “limited,” while El Mundo and Xataka claim 500 GB were stolen.
How it was framed
Outlets: 10. Countries: 3. Facts in the shared core: 3.
Publication timeline
-
·
El Mundo (outlet profile)
Un grupo criminal hackea las webs de Adif y Renfe con una IA y roba 500 Gigabytes de datos. El ciberataque se ha producido durante varios días, aunque el peor momento se produjo el jueves Leer
-
·
Europa Press (outlet profile)
Renfe investiga un ciberataque a sistemas de Adif que afecta a datos privados, pero no DNIs o métodos de pago. Renfe ha abierto este viernes una investigación técnica sobre un "incidente de ciberseguridad" relativo a la…
-
·
20minutos (outlet profile)
Renfe desvela un ciberataque con origen en Adif: los atacantes se han hecho con información "limitada" de usuarios. Los 'hackers' se han hecho sobre todo con nombres y direcciones de correo electrónico, y el ataque no h…
-
·
El País (outlet profile)
Renfe investiga un ciberataque vinculado a sistemas de Adif que expuso datos básicos de usuarios. La compañía asegura que los atacantes solo pudieron acceder a nombres y correos electrónicos y que no existen indicios de…
-
·
La Vanguardia (outlet profile)
Renfe denuncia un ciberataque con origen en Adif que filtró nombres y correos de clientes. La investigación apunta a que los atacantes pudieron acceder a información limitada de usuarios, consistente principalmente en n…
-
·
elDiario.es (outlet profile)
Renfe investiga un ciberataque a sistemas de Adif que filtró datos de usuarios. La compañía pública ha asegurado que no se han visto afectados datos sensibles como DNI o métodos de pago Renfe gasta unos tres millones al…
-
·
El Economista (outlet profile)
Ciberataque con IA afecta a los datos de usuarios del operador ferroviario español. Medios informativos afirman que se trata del primer ciberataque con IA en la web de una empresa pública española.
-
·
BFMTV (outlet profile)
Après ses trains à grande vitesse défectueux, une cyberattaque dopée à l'IA frappe la compagnie ferroviaire publique espagnole. La Renfe a annoncé vendredi avoir été victime d'une cyberattaque ayant entrainé la fuite de…
-
·
La Croix (outlet profile)
Espagne : la compagnie ferroviaire publique Renfe touchée par une cyberattaque. La compagnie ferroviaire publique espagnole Renfe a été victime d’une cyberattaque opérée à l’aide de l’intelligence artificielle. Des donn…
-
·
Xataka (outlet profile)
El ciberataque a Renfe y Adif confirma lo que la IA llevaba meses avisando. 500GB de datos de clientes quedan al descubierto. Algo pasaba cuando la web de Adif mostraba un tierno gatito negro y ya lo sabemos: Adif y Ren…
-
·
20minutos (outlet profile)
Adif informa que sus webs vuelven a estar operativas tras un ciberataque a sus sistemas. El administrador ferroviario ha asegurado en sus redes sociales que ningún sistema informático se ha visto afectado.
Factual core
- Renfe is investigating a cyberattack linked to Adif systems that exposed basic user data.
- The investigation indicates attackers accessed limited user information, mainly names and email addresses.
- The attack is reported as the first AI-powered cyberattack on the website of a Spanish public company.