LATAM Data Breach Exposed Names, Addresses and Card Details
Chile · TRAVEL
The airline says passwords and full card numbers were protected, but the exposed partial card data could still help fraudsters sound convincing.
LATAM data breach exposed names, addresses and card details of some frequent flyer members, the airline said on 19 August 2026. The company discovered the incident on 29 July 2026 and has since notified Brazil’s data protection authority, the ANPD.
What Happened in the LATAM Data Breach
LATAM Airlines Brasil disclosed the LATAM data breach on 19 August 2026 in a public statement and in emails to customers. The security team identified the incident internally on 29 July 2026, about three weeks before the public announcement.
According to the company, a flaw in its systems allowed unauthorised automated queries against customer data registers. This led to unauthorised consultation of stored records, exposing personal and card information.
What Personal Data Was Exposed
The LATAM data breach exposed full names, dates of birth, email addresses, telephone numbers, and home addresses. In addition, LATAM Pass membership numbers, loyalty tier, mileage balance, and qualifying points were also compromised.
LATAM Pass is the airline’s frequent flyer programme, and affected members may want to check their account details. The company did not say how many customers were affected, only that a limited portion of LATAM Pass members was involved.
Live Company IntelligenceLATAM Data Breach Exposed Names, Addresses and Card Details — the full investor dossier
LATAM Airlines Group S.A., together with its subsidiaries, provides passenger and cargo air transportation services in Chile, Argentina, Peru, Colombia, Ecuador, Brazil, the United States, other Latin American countries, the Caribbean, Europe, and Oceania. As of December 31, 2024, the company provides passenger transport services to…
Net income rose to $1.5 bn in 2025, from $581.8 mn in 2023.
Q2 2026— reported EPS
0.00
Card Details in the LATAM Data Breach
The LATAM data breach exposed the first six and last four digits of linked credit cards. The card brand, cardholder name and expiry date were also included.
However, full card numbers, CVV security codes, passwords, and bank details were not exposed. The first six digits identify the issuing bank and card type.
The last four are printed on many receipts. Together they are not enough to make a payment, but they help an attacker sound convincing on the phone.
How LATAM Responded
LATAM says it blocked suspicious IP addresses, corrected the system code, and added cybersecurity safeguards. In addition, the company deployed protections against automated access to prevent similar incidents.
The airline framed the risk as limited. It says passwords, full card numbers and CVV codes stayed protected, and advised members to monitor their statements.
Advice for Affected Customers
Brazilian coverage reports that LATAM advised affected LATAM Pass members to monitor their card statements and account activity. If they see suspicious charges, they should contact their bank or card issuer.
Because the LATAM data breach exposed partial card details, staying alert is important. However, customers do not need to cancel their cards, as the company says the exposed data is not enough to make payments.
Notification to Regulators
LATAM notified Brazil’s data protection authority, the ANPD, about the LATAM data breach. This is a standard step for companies operating in Brazil when a data incident occurs.
The notification helps regulators oversee how the company handles the situation. Meanwhile, LATAM continues to communicate with affected customers directly.
What the LATAM Data Breach Means for You
If you are a LATAM Pass member, the LATAM data breach may have exposed your personal details and partial card information. Therefore, it is wise to review your recent card statements and account activity.
Passwords, full card numbers and CVV codes were not exposed, so the risk of direct fraud is lower. Still, be wary of unsolicited calls asking for more details.
LATAM Data Breach: Limited Scope
LATAM did not give a number of affected customers, saying only that a limited portion of LATAM Pass members was involved. The company declined to quantify it, which means the full scale remains unknown.
By contrast, the company emphasized that the exposed card data was partial and that passwords were protected. This suggests the risk is lower than a full data breach, but monitoring is still recommended.
Steps to Protect Yourself After the LATAM Data Breach
After the LATAM data breach, affected customers should monitor their card statements and account activity regularly. If they notice any suspicious charges, they should contact their bank or card issuer immediately.
In addition, be wary of phishing attempts that might use your exposed personal details. Since the breach included names and addresses, scammers could craft convincing messages, so verify any unexpected communications.
Frequently Asked Questions
What information was exposed in the LATAM data breach?
The breach exposed personal data such as full names, dates of birth, email addresses, phone numbers, and home addresses. It also exposed partial card data including the first six and last four digits, card brand, cardholder name, and expiry date.
Were full credit card numbers or passwords exposed?
No, full card numbers, CVV security codes, passwords, and bank details were not exposed. The company says the exposed card data was partial and not enough to make payments.
How many customers were affected by the LATAM data breach?
LATAM did not provide a number of affected customers. It said only that a limited portion of LATAM Pass members was involved and declined to quantify it.
What should I do if I think I am affected?
Monitor your card statements and account activity for any suspicious charges. If you see anything unusual, contact your bank or card issuer.
This article was produced by The Rio Times’ automated newsroom system. How we use AI · Report an error