Rail Europe North America (RENA) notifies customers of a security breach, crooks compromised its website with a malware used to siphon payment card data. The website allows users to buy European train tickets, according to the company the data breach lasted at least three months. Hackers accessed registered users personal information including name, gender, delivery address, invoicing address, telephone number, email address, credit/debit card number, expiration date and CVV of customers.”]
Source: https://securityaffairs.co/wordpress/72558/data-breach/rail-europe-north-america-hack.html