logo

Hospitality Hackers Target Hotels' Booking.com Logins

ID: 7c5005a3-53eb-58b9-adf3-5d38a87124f4

STIX ID: report--7c5005a3-53eb-58b9-adf3-5d38a87124f4

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2024-01-09

Date Updated: 2026-04-21

Author: Tara Seals, Managing Editor, News, Dark Reading

...
...

Perception Point observed a widespread phishing campaign targeting hotels that use Booking.com: emails trick hotel staff into clicking realistic “Reply to Complaint” or reservation links that lead to convincing fake Booking.com sign-in pages to steal credentials. Attackers aim to access hotel Booking.com profiles to harvest guest PII and payment details and then run highly personalized follow-on phishing against customers; the campaign uses industry-specific social engineering, convincing domains, and generative AI to increase effectiveness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.