# Cyberattacks Target Tokyo's Major Railway and Transport Operators

*Published September 30, 2026*
*Source: [https://www.infosecurity-magazine.com/news/japanese-railway-operators-cyber/](https://www.infosecurity-magazine.com/news/japanese-railway-operators-cyber/)*

## Executive Summary

Tokyo's major railway operators, Tokyo Metro and Keio, have experienced significant cyberattacks that compromised customer data, though services remain unaffected. This highlights the vulnerability of critical infrastructure and the importance of robust cybersecurity measures.

## Article

In recent cyber incidents, two prominent railway operators in Tokyo, Japan, have reported significant breaches, while passenger services remain operational. Tokyo Metro, which transports over seven million passengers daily, disclosed that an unauthorized party accessed the email addresses of 59,000 members of its Metpo loyalty program. The company has since identified the breach point and implemented measures to prevent future incidents. Though only email addresses were compromised, Tokyo Metro advises customers to remain vigilant against potential phishing attacks.

Another affected operator, Keio Corporation, experienced a ransomware attack on September 26. The company promptly reacted by disconnecting impacted systems from the internet to contain the threat. Currently, investigations by law enforcement are ongoing to determine if any sensitive business or customer data was leaked. While Keio's railway services are unaffected, disruptions have been noted in sales systems of related businesses, including Keio Plaza Hotel, leading to delays in customer inquiries.

Furthermore, Times Car, a car-rental company, reported a separate incident on September 25, where unauthorized access to its website resulted in the exposure of personal data for up to 6.6 million individuals. The compromised information includes names, addresses, dates of birth, and driver's license details. The company emphasized caution against phishing attempts, reassuring that passwords are securely stored and cannot be exploited for account misuse.

These incidents highlight the ongoing cybersecurity challenges faced by critical infrastructure and service providers in Japan, underscoring the necessity for comprehensive security measures and user awareness.
