‘Cyber security incident’ hits wifi at Network Rail stations

26 September 2024, 11:04

Passengers milling about at London King's Cross
Network Rail hit by cyber attack. Picture: PA

Stations hit included Manchester Piccadilly, Birmingham New Street and 11 stations in London.

A cyber attack has hit public wifi at some of the biggest railway stations in the country.

Manchester Piccadilly, Birmingham New Street, Edinburgh Waverley, Glasgow Central and 10 stations in London have all been affected by the attack on Wednesday which saw passengers trying to log on seeing messages about terror attacks in Europe, according to reports.

The Manchester Evening News said the wifi webpage after the hack said, “We love you, Europe” and contained information about terror attacks.

Network Rail, which manages the stations, has suspended wifi services at stations across the country following what it described as a “cyber security incident”.

The only Network Rail-managed station not affected was St Pancras.

A Network Rail spokesperson said: “We are currently dealing with a cyber security incident affecting the public wifi at Network Rail’s managed stations.

“British Transport Police are investigating the incident.

“This service is provided via a third party and has been suspended while an investigation is under way.”

British Transport Police said: “We received reports at around 5.03pm yesterday (September 25) of a cyber attack displaying Islamophobic messaging on some Network Rail wifi services.

“We are working alongside Network Rail to investigate the incident at pace.”

Telent, the third-party firm which provides wifi for Network Rail, said it was also investigating the incident.

“We are aware of the cybersecurity incident affecting the public wifi at Network Rail’s managed stations and are investigating with Network Rail and other stakeholders,” a company spokesperson said.

“We have been informed there is an ongoing investigation by the British Transport Police into this incident, so it would not be appropriate to comment further at this stage.”

According to its website, Telent helps design, build, support and manage some of the UK’s “critical digital infrastructure”, and its other customers include Openreach, Transport for London (TfL), National Highways, the Maritime and Coastguard Agency and the NHS Ambulance Radio Programme.

It has not yet been confirmed if any of Telent’s other customers have been impacted by the incident.

Jake Moore, global cybersecurity adviser at Eset, said the incident appeared to be an attempt to draw attention to a lack of security, rather than a “genuine threat”.

“Cyber attacks often occur in stealth mode and attempt to carry out activities without anyone noticing anything until the real damage is complete,” he said.

“However, by defacing the wifi logon screen with a terror message suggests that the motive may simply be to test its general security rather than to pose a genuine threat – and in this case, via the weakest link in the supply chain and most likely via a phishing campaign.

“Financially motivated cyber criminals are out to find data they can either steal or sabotage with a ransom demand put in place.

“However, it seems nothing more has been demanded here other than more security in place following a separate attack on TfL earlier this month.”

– The stations affected are:
Birmingham New Street;
Bristol Temple Meads;
Edinburgh Waverley;
Glasgow Central;
Guildford;
Leeds;
Liverpool Lime Street;
London Bridge;
London Cannon Street;
London Charing Cross;
London Clapham Junction;
London Euston;
London King’s Cross;
London Liverpool Street;
London Paddington;
London Victoria;
London Waterloo;
Manchester Piccadilly;
Reading

By Press Association

More Technology News

See more More Technology News

Prime Minister hosts Chanukah reception

AI tech giants should not be subsidised by British creatives, Starmer signals

Dr Craig Wright arrives at the Rolls Building in London for the trial earlier this year (Lucy North/PA)

Computer scientist behind false Bitcoin founder claim sentenced for contempt

Google has been contacted for comment (PA)

ICO criticises Google over ‘irresponsible’ advertising tracking change

Some 22% of consumers have increased their use of second-hand shopping apps in the past three months (Depop/PA)

Millions of Britons earning average £146 a month on second-hand platforms

ChatGPT being used via WhatsApp

ChatGPT joins WhatsApp to allow anyone to access the AI chatbot

A Facebook home page on a laptop screen

Meta fined more than 250 million euro by Irish data commission following breach

Finger poised above WhatsApp app on smartphone

Ending use of WhatsApp is ‘clear admission’ Government was wrong, claim Tories

Phone with WhatsApp on the screen

Scottish Government to cease use of WhatsApp by spring, says Forbes

Open AI

OpenAI rolls out ChatGPT search engine tool to all users

Most people happy to share health data to develop artificial intelligence

Government launches consultation on copyrighted material being used to train AI

Debbie Weinstein

Google names UK executive as president for Europe, Middle East and Africa

The Apple App store app on an iPad (PA)

Shopping and Roblox named among most popular Apple App Store downloads of 2024

A young child lies on a couch while playing on a smartphone

Q&A: Ofcom, the Online Safety Act, and codes of practice for social media

A girl using a mobile phone

Ofcom’s new online harms rules for social media firms disappoint campaigners

A man in a hoodie in front of several computer monitors

Peers urge ministers to step-up efforts to criminalise deepfake abuse

Exclusive
‘The law is really slow in catching up’: Woman fights for justice after friend made deepfake porn of her

‘The law is really slow in catching up’: Woman fights for justice after friend made deepfake porn of her