> series: anatomy_of_a_breach —— part: 189 —— target: transport_for_london —— staff_resets: 5,000 —— journeys_daily: 9,000,000 —— arrested: 17-year-old<span class="cursor-blink">_</span>_
On 1 September 2024, Transport for London (TfL) disclosed that it was dealing with an ongoing cyber attack affecting its internal systems. The attack disrupted TfL's ability to process Oyster card refunds, affected real-time travel information systems, and compromised internal platforms. Approximately 5,000 TfL staff were required to attend in-person identity verification appointments to reset their credentials — a massive operational undertaking for an organisation of TfL's scale.
TfL subsequently confirmed that customer data had been accessed — including names, email addresses, home addresses, and in some cases bank account details associated with Oyster card refunds for approximately 5,000 customers. A 17-year-old from Walsall was arrested in connection with the attack — continuing the pattern of teenage attackers documented throughout this series from TalkTalk (15-year-old, 2015) through Twitter (17-year-old, 2020) to Lapsus$ (16-year-old, 2022).
We'll scope your test for free and tell you exactly what you need. No obligation, no hard sell.
Free Scoping CallThe TfL attack confirmed that UK transport infrastructure — responsible for millions of daily journeys — is a high-value cyber target. Cyber Essentials provides the baseline for transport organisations. Infrastructure testing assesses transport system security and identity management. SOC in a Box monitors transport infrastructure 24/7. And UK Cyber Defence provides the incident response capability that transport organisations need when attacks disrupt operations.
<a href="/cyber-essentials">Cyber Essentials</a> provides the baseline. <a href="/penetration-testing/infrastructure">Infrastructure testing</a> validates transport security. <a href="https://www.socinabox.co.uk">SOC in a Box</a> monitors 24/7.
We'll scope your test for free and tell you exactly what you need. No obligation, no hard sell.
Free Scoping Call