Keio Corporation (Japan): ransomware 26 Sep disrupted hospitality/payment systems; trains said unaffected
Keio Corporation (major private railway / hospitality group, Japan) confirmed a ransomware attack on group servers in the early hours of 26 September 2026; reported to police and investigating with external experts (BleepingComputer 28 Sep quoting company). Network shut down after early-Saturday system failure to limit damage; impact assessment includes whether customer or partner data was accessed. Reporting indicates hospitality side (Keio Plaza Hotel Tokyo warning of possible customer-service delays) and payment systems disrupted; train operations said unaffected. No ransomware brand claim found by BleepingComputer at publication. Same weekend, Tokyo Metro separately disclosed unauthorised access exposing ~59,000 member email addresses (weakness closed) — unclear if related. Primary wire: BleepingComputer 28 Sep; company JP notices as available.
- Product
- Keio group servers (hospitality / business systems; not train OT per reporting)
- Versions
- n/a (ransomware incident)
- Exploited in Australia?
- unknown
Primary: BleepingComputer — Keio ransomware confirmation (28 Sep 2026) · Vendor: Keio Corporation (English site — check JP announce for primary notice)
