< Back to all clusters
[TECHNOLOGY] · Spain · 10 sources

started · updated

Adif and Renfe cyberattack compromises 150 million user records

A major cyberattack targeting Spain’s state-owned railway infrastructure manager, Adif, and operator, Renfe, has resulted in the theft of approximately 500 GB of data. While initial reports suggested the breach was limited to names and email addresses, subsequent forensic analysis reveals that over 150 million data records were compromised.

The stolen information is categorized into three tiers: 20 million low-risk records containing names and IDs; 20 million high-risk records including full names, dates of birth, phone numbers, and postal addresses; and 100 million nominative ticket records. The latter allows attackers to potentially map the travel patterns of specific individuals.

Reports indicate the attack may have been executed using artificial intelligence, marking a significant escalation in cyber threats to Spanish critical infrastructure. Although the breach originated on Adif servers, train services and operational systems remained unaffected. Authorities, including the National Cryptologic Center, are investigating. Currently, there is no evidence that sensitive banking or payment information was accessed.

Entities

Adif · Centro Criptológico Nacional · Ministry of Transport · National Cryptologic Center · Renfe · Spain

Claims

What the coverage asserts, and how many sources carry each claim.