
Amtrak
Data Breach on April 13, 2026
| Data Breach Report | |||
|---|---|---|---|
| Victim | amtrak.com | ||
| Threat Actor | ShinyHunters | ||
| Date Discovered | Apr 13, 2026 | ||
| Description | Amtrak is a passenger railroad service company based in the USA (District of Columbia), provides intercity rail transportation. | ||
| Leak Size | Unknown |
Credential Exposure for amtrak.com
We've indexed 2,716 @amtrak.com accounts from external breaches, plus 7,982 credentials for amtrak.com itself.
Last checked Aug 23, 2026
| @amtrak.com addresses from external breaches | |
|---|---|
| Third-party breaches | 2,621 accounts · across 254 breaches · 2,315 with a plaintext password · most recent Jan 8, 2026 |
| Combo lists | 881 accounts · most recent Aug 21, 2026 |
| Phishing pages | 25 accounts · most recent Aug 12, 2026 |
| Passwords for amtrak.com accounts | |
|---|---|
| Combo lists | 5,940 logins · most recent Aug 23, 2026 |
| Infostealer logs | 2,596 logins · 1,679 infected devices · most recent Aug 8, 2026 |
Logins may belong to customers or to staff, and the data doesn't say which. None of this is necessarily connected to the ransomware attack above.
Is your organization next?
Amtrak was breached. Check if your company's credentials have been exposed in this or other data breaches.
Check your exposure →Continuous dark web monitoring alerts you when we find leaked credentials or session tokens for your company.