Pirates abuse hotel booking notifications to steal references in a new phishing campaign


  • The phishing campaign targets hotel staff using false Expedia and Cloudbeds connection pages
  • The attackers show in -depth knowledge of hospital workflows to stimulate credibility
  • Hotel companies are main targets due to the constant management of guests sensitive data

Hotels and other similar companies in the hotel industry are targeted by an advanced and very convincing phishing campaign.

The objective of the attacks is to collect user names, passwords and potentially multi-factor authentication tokens (MFA) from two platforms centered on hospitality: Expedia Partner Central and Cloudbeds.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top