Hackers Hijack Hotel Booking Workflows to Scam Guests With Fake Payment Requests
Overview:
Hackers are exploiting hotel booking workflows to scam guests by sending fake payment requests. These scams often come through messaging apps like WhatsApp or SMS, posing as official hotel communications.
How the Scams Operate:
-
Phishing Attacks:
- Hackers send phishing messages that appear legitimate.
- The goal is to steal staff credentials and gain access to guest data.
-
Exploiting Communication Tools:
- Once hackers infiltrate communication tools, they can impersonate hotel staff or inject malicious links into booking workflows.
- These links often lead to fake payment pages designed to steal financial information from unsuspecting guests.
Steps for Guests:
-
Verify Requests Independently:
- If you receive a message asking for payment verification or re-entry of payment details, do not tap the link provided.
- Instead, go directly to the hotel's official website or the original booking platform on your own initiative.
-
Contact Your Bank Immediately:
- If you have already entered payment information into a suspicious site, contact your bank immediately.
- Cancel the card and turn on transaction alerts
Read the full article at Cyber Security News
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.





