ClickFix Phishing Campaign Targets Booking.com and Hotels

ClickFix Phishing Campaign Targets Booking.com and Hotels

First seen 2 Dec 2025, 18:33 UTC Infosecurity-MagazineScmagazineEsecurityplanetDarkreadingScworld+3 77% similarity 19.3

Article Content

Browse articles
ThreatCluster

A phishing campaign named ClickFix has been targeting hotels and their customers, exploiting compromised accounts on Booking.com. Cybercriminals have used malware to steal customer data and launch phishing attacks, convincing victims to enter sensitive information on spoofed websites. The campaign has been active since at least April 2025 and has affected numerous hotels globally, including those in Vietnam.

ThreatCluster AI

Community

Browse all →