rzd.ru data breach

rzd.ru

What Happened

In 2026, Russian Railways (RZD, rzd.ru) was at the center of several cyber incidents and leak claims, but there is no confirmed single, discrete “rzd.ru data breach” formally acknowledged by the company for that year. According to Russian cybersecurity coverage, by early 2026 RZD had registered roughly 4.5 million cyberattacks in four months, and in April 2026 the hacker group «Хакерский кот» (“Hacker Cat”) publicly claimed to have breached RZD’s infrastructure and stolen terabytes of internal accounting records, maintenance documents, correspondence, and financial reports from 2024–2026 via an attack on an RZD supplier; RZD officially denied that any data leak had occurred. Separately, regulators had earlier identified a massive database of company employees—over 17 million lines—circulating in open Telegram channels, which led to a Roskomnadzor fine that was later overturned on appeal in February 2026, but public sources do not provide a precise record count or technical detail tying that leak to a specific 2026 compromise of rzd.ru itself.

Compromised Assets

  • email
  • phone

Check your company's
exposed credentials

Enter your work email to instantly access a free account
and see your company’s exposed credentials.

Related Breaches