< Back to situations

Monitor this situation.

[SITUATION] · [ACTIVE] · [CRIME]

16 clusters · 63 sources · 93 days · First seen · Last updated

European hotel reservation data breaches and fraud wave

Overview

The wave of fraud targeting European hotel reservation data continues to evolve, increasingly aided by artificial intelligence. Cybersecurity experts note that AI is acting as an “accelerator,” enabling criminals to generate industrial-scale phishing attacks in seconds.

In Germany, travel organizers reported preventing an average of 74 fraud cases per month during June and July, representing a potential monthly loss of approximately €113,000. Meanwhile, the Fraudehelpdesk reported a massive surge in phishing attacks targeting online booking platforms in the first half of the year. Reports related to booking sites reached 1,072, a nearly tenfold increase compared to the same period last year. Booking.com is the primary target, accounting for over 90 percent of these reports. In 95 percent of these specific cases, fraudsters used WhatsApp as the primary communication channel, often posing as hotels to request payments via malicious links. Total phishing reports to the Fraudehelpdesk rose from 2,776 to 15,106 during the first six months, with financial damages increasing from €113,574 to €491,793. Criminals are reportedly using personal data from large-scale breaches to make messages more convincing.

Beyond phishing, the industry is seeing a rise in loyalty fraud and the ‘ClickFix’ technique. Specific account hijacking incidents continue to cause damage. In Italy, scammers hijacked the account of the Govinda Shanty House to list a non-existent ‘ghost apartment’ in Milan. This scheme resulted in approximately €80,000 in fraudulent bookings and €30,000 in fraudulent commission demands. Booking.com maintains that these incidents stem from phishing attacks targeting partner accounts rather than direct platform breaches.

Entities

Booking.com · Fraudehelpdesk · Hotel partners · Monopoli · travelers

Claims

What the coverage asserts, and how many sources carry each claim.

Timeline

  1. 6 days ago

    [CRIME] 7 sources
    Booking.com phishing reports surge tenfold in first half of year

    Phishing reports targeting online booking sites, primarily Booking.com, have increased nearly tenfold, with many scams conducted via WhatsApp using stolen personal data.

  2. 23 days ago

    [BUSINESS] 10 sources
    Booking.com addresses phishing scam involving fake Milan listings

    Scammers used a phishing attack to hijack a Booking.com partner account, listing fake Milan apartments and generating 80,000 euros in fraudulent bookings.

  3. about 1 month ago

    [TECHNOLOGY] 2 sources
    Cyberattacks target tourism industry through loyalty fraud and phishing

    Cybercriminals are targeting the tourism sector using AI-driven phishing, loyalty fraud, and malware campaigns via Booking.com to steal travel rewards and install malicious software on hotel systems.

  4. about 1 month ago

    [TECHNOLOGY] 2 sources
    Cybercriminals target hotels with fake Windows Blue Screens

    A new ‘ClickFix’ phishing campaign targets European hotels using fake Booking.com emails and fraudulent Windows Blue Screens to trick employees into installing malware.

  5. about 1 month ago

    [BUSINESS] 2 sources
    Booking.com fraud cases and financial losses surge

    Phishing and fraudulent listings on Booking.com have surged in the first half of 2026, with reported cases and economic losses significantly exceeding 2025 levels.

  6. about 2 months ago

    [CRIME] 6 sources
    Booking.com phishing scam exploits real reservation data to steal travelers' money

    Hackers compromised Booking.com hotel accounts, stole real guest data and phished travelers via chat or messenger, prompting urgent payment requests that lead to stolen funds; the scam is reported in Germany, R

  7. about 2 months ago

    [CRIME] 3 sources
    Booking.com data breach fuels targeted hotel reservation phishing scams

    A Booking.com breach via hotel partners' systems leaked reservation details, enabling sophisticated phishing emails that have already cost victims thousands, prompting security warnings and fraud‑avoidance tips

  8. about 2 months ago

    [CRIME] 6 sources
    WhatsApp Scam Impersonating Booking.com Targets Vacationers in Germany

    A WhatsApp phishing scheme pretends to be Booking.com, sending German travelers a fake link that harvests personal and credit‑card data.

  9. about 2 months ago

    [BUSINESS] 2 sources
    Booking.com expands Genius loyalty program amid phishing scams

    Booking.com’s Genius loyalty program offers tiered discounts and perks, while a new phishing scam pretends to give a €435 cashback, luring users to fake login sites.

  10. 2 months ago

    [CRIME] 2 sources
    Booking.com data breach fuels travel‑fraud scams during peak season

    Booking.com’s April data breach exposed traveler details; criminals are using the information for precise fraud scams during peak travel season, prompting the company to reset PINs and advise security steps.

  11. 2 months ago

    [CRIME] 5 sources
    Polish hotels targeted by cyber‑fraud scheme exploiting reservation data

    A breach of a hotel reservation system in Poland enabled scammers to send fake payment requests, prompting warnings to verify bookings and avoid clicking links.

  12. 3 months ago

    [CRIME] 5 sources
    Booking.com users targeted by fraudulent payment alerts

    Scammers impersonating Booking.com hotels send urgent fake payment alerts, prompting travelers to reveal card details; verify bookings directly and contact banks if compromised.

  13. 3 months ago

    [TECHNOLOGY] 2 sources
    Booking.com data breach sparks travel scams via WhatsApp

    Booking.com disclosed a data breach that exposed customer details; scammers are using the leaked information on WhatsApp to run fake cancellation scams, prompting warnings from the company and authorities.

  14. 3 months ago

    [CRIME] 2 sources
    Hotel and Booking Platform Data Hack Triggers Global Fraud Alerts

    Hackers breached hotel and booking platforms, stealing guest data and using it in WhatsApp fraud scams; consumer groups warn against clicking payment links and urge direct verification.

  15. 3 months ago

    [TECHNOLOGY] 2 sources
    Croatian hotel reservation hack exposes data of 100,000 guests

    A hack on a Croatian hotel reservation app stole data of over 100,000 guests, led to extortion attempts via WhatsApp, and is linked to a Serbian hacking group; AZOP is investigating.

  16. 3 months ago

    [CRIME] 7 sources
    Croatian hotel reservation platform Phobs data breach affects ~100,000 tourists

    Phobs breach exposes personal data of ~100,000 Croatian hotel guests; scammers send fake WhatsApp messages to steal payment info. Hotels and data authority warn travelers.

Sources

072info.com · 31mag.nl · amica.de · ap-verlag.de · barilocheinforma.gob.ar · beaumonde.nl · beveiligingnieuws.nl · bieb.knab.nl · biznis.kurir.rs · borncity.com · bright.nl · cineplex.com.br · criptotendencia.com · dalmacijanews.hr · dalmatinskiportal.hr · derwesten.de · es.fxmag.com · excelsior.com.mx · explorandobrasil.com · extratipp.com · fehmarn24.de · futurezone.de · go4it.ro · goudsdagblad.nl · hna.de · hrturizam.hr · internautes.com · it-boltwise.de · itv-coburg.de · kleinezeitung.at · kreiszeitung.de · leinetal24.de · mannheim24.de · moncloa.com · mzee.com · newsmonkey.be · noordernieuws.be · noticiasdemalaga.es · notiulti.com · nsuzivo.rs · p-magazine.be · pal.be · poslovni.hr · presse-nachrichten.de · primeraplanany.com · recenzjeksiazek.natemat.pl · reisen.t-online.de · ridderkerksdagblad.nl

This summary has been updated 7 times: see revision history