Global Phishing Campaign Targets Booking.com and Hotels

Global Phishing Campaign Targets Booking.com and Hotels

First seen 23 Nov 2025, 12:26 UTC Vietnamnet.Vn 75% similarity 19.1

Article Content

Browse articles
ThreatCluster

A phishing campaign named 'I Paid Twice' has been targeting Booking.com partner hotels and their customers since April 2025. Cybercriminals are using compromised hotel accounts to send phishing emails that trick travelers into providing banking information through spoofed Booking.com pages. The campaign has been linked to the ClickFix malware, which facilitates the theft of customer data.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story