Site icon Inside Croydon

Bank details for 5,000 TfL passengers accessed in cyber attack

The National Crime Agency has this afternoon announced that it has traced the source of the cyber attack against Transport for London to a teenager living in Walsall in the West Midlands.

The news comes as TfL has admitted for the first time that as many as 5,000 regular passengers on the capital’s bus, Tube, Overground and Tram networks may have had their banking details illegally accessed.

Of those affected, “This includes some customer names and contact details, including email addresses and home addresses where provided,” TfL said. Some Oyster card refund data may have also been accessed, “possibly including bank account numbers and sort codes for a limited number of customers”.

It was reported yesterday that TfL has suspended all Oyster card renewals temporarily, as a precaution because of the cyber attack.

Today, the NCA issued a statement: “The 17-year-old male was detained on suspicion of Computer Misuse Act offences in relation to the attack, which was launched on TfL on September 1.”

The NCA says it is working with TfL and the National Cyber Security Centre “to manage the incident and minimise any risks”.

The teenager, who is not yet old enough to be named in the media, was arrested on September 5, questioned and bailed.

Paul Foster, the head of the NCA’s cyber crime unit, said: “Attacks on public infrastructure such as this can be hugely disruptive and lead to severe consequences for local communities and national systems.

“The swift response by TfL following the incident has enabled us to act quickly, and we are grateful for their continued co-operation with our investigation, which remains ongoing.”

Apologising for the inconvenience caused to London’s public transport passengers, TfL said this afternoon: “We are doing all we can to protect our services and secure our systems and data.”

As a result of TfL’s responses to the hack attack:

“We’re also undertaking an all-staff IT identity check,” TfL said. “Although we don’t expect any significant impact to customer journeys as we carry out this process, temporary and limited disruption is possible to some services. Please check before you travel.”

The TfL and NCA investigation has discovered some possible illegal access to Oyster card refund data.

“Although there has been very little impact on our customers so far, the situation is evolving and our investigations have identified that certain customer data has been accessed,” TfL said.

“This includes some customer names and contact details, including email addresses and home addresses where provided.

“Some Oyster card refund data may have also been accessed. This could include bank account numbers and sort codes for a limited number of customers (around 5,000).

“If you are affected, we will contact you directly as soon as possible as a precautionary measure, and will offer you support and guidance.

“We will continue to keep you updated. We are sorry for the inconvenience this incident may cause and thank you for your patience.”


Inside Croydon – If you want real journalism, delivering real news, from a publication that is actually based in the borough, please consider paying for it. Sign up today: click here for more details



Exit mobile version