A hacker has shared a massive dataset linked to the 2024 cyberattack on Transport for London (TfL), revealing the scale of the incident. The TfL data breach exposed personal information belonging to roughly 10 million people, according to the leaked database.

The hacker reportedly sent a copy of the dataset directly to a BBC journalist. After examining the files, the reporter discovered that his own personal information appeared in the compromised records. The discovery confirmed that the breach affected far more individuals than previously understood.

Hacker Shares Database With BBC

The incident came to light after an individual claiming to be part of the hacking community contacted a BBC cybersecurity reporter through Telegram. The attacker provided access to a database that allegedly originated from the 2024 TfL cyberattack.

When the journalist analyzed the dataset, he found millions of records containing personal information. The database included details such as names, email addresses, phone numbers, and home addresses.

The reporter confirmed that his own personal data appeared in the leaked records, reinforcing concerns about the breadth of the breach.

Personal Data of Millions Exposed

The leaked database reportedly contained information linked to around 10 million individuals. The compromised data included multiple types of personal contact information that could be used for fraud or identity theft.

According to reports, the exposed data included:

  • Names
  • Email addresses
  • Mobile phone numbers
  • Home phone numbers
  • Physical addresses

Because the dataset contains detailed contact information, cybersecurity experts warn that victims may face increased risks of phishing attacks or scam attempts.

Breach Linked to 2024 TfL Cyberattack

The leaked dataset appears to originate from a cyberattack that targeted Transport for London in 2024. The organization previously confirmed that attackers gained access to some customer information during the incident.

Investigators discovered suspicious activity within TfL systems at the time and moved quickly to limit access to affected infrastructure. Authorities later confirmed that certain customer contact details had been accessed during the breach.

Although the organization responded to the incident and notified affected individuals, the newly surfaced database suggests the breach may have been larger than initially believed.

Data Leak Raises Security Concerns

The appearance of the dataset raises questions about how the stolen information is being stored and distributed within hacking communities. Attackers sometimes share stolen databases to demonstrate access or build reputation among cybercriminal networks.

Once such data circulates online, it can remain available for years. Criminal groups may use the information for identity theft, social engineering, or targeted phishing campaigns.

Security analysts warn that large datasets containing verified personal information are especially valuable to cybercriminals.

Conclusion

The TfL data breach continues to raise concerns after a hacker shared a database containing personal details of roughly 10 million individuals. The dataset appears to originate from the 2024 cyberattack on Transport for London and includes sensitive contact information.

The incident highlights the long-term risks associated with large data breaches. Even years after an attack occurs, stolen information can resurface and expose victims to fraud and phishing threats. Organizations and individuals alike must remain vigilant as cybercriminals continue exploiting compromised data.


0 responses to “TfL Data Breach Exposes 10M Records”