Skip to content
Malware Campaign Targets Hospitality Sector via Phishing and Exploits

Malware Campaign Targets Hospitality Sector via Phishing and Exploits

First seen 8 Jan 2026, 18:48 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

A new malware campaign is targeting the hospitality sector, specifically through phishing emails that impersonate Booking.com reservation cancellation notices. The attacks, attributed to a likely Russian actor, utilize techniques such as ClickFix and a fake Blue Screen of Death before deploying the DCRat malware.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

More articles in this cluster (3)

Following this threat?

Track Dcrat in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed