Skip to content
WhatsApp Hotel Scams Target Travelers with Phishing Attacks

WhatsApp Hotel Scams Target Travelers with Phishing Attacks

First seen 19 Jun 2026, 17:53 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster June 20, 2026 at 17:51 UTC
  • WhatsApp is being used for targeted phishing scams against travelers.
  • Attackers exploit real booking information to create convincing messages.
  • The campaign has been active since March 2026 and spans over 10 countries.

A phishing campaign targeting travelers through WhatsApp has been identified, leveraging real booking information to impersonate hotels and resorts. Researchers at Bitdefender Labs have tracked this operation since March 2026, noting its evolution and localization across multiple countries, including the UK, Germany, and Canada. The attackers use convincing hotel branding and personalized messages to deceive victims into providing payment card details. The campaign has affected travelers in over 10 countries, with at least six active phishing campaigns identified. This operation highlights the increasing value of reservation data to cybercriminals, who exploit data leaks from booking platforms. The ongoing nature of this campaign poses a significant threat to travelers, especially during peak travel seasons. No evidence suggests that the impersonated hotel brands were compromised, indicating a focus on brand impersonation rather than direct attacks on the hotels themselves.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 92d ago How this analysis works

Timeline

2026-03-01
Phishing campaign identified
Bitdefender Labs began tracking a WhatsApp-based phishing campaign targeting travelers.
Bitdefender
2026-06-17
Bitdefender report published
Bitdefender published findings on the ongoing WhatsApp hotel scams, detailing their methods and scope.
Bitdefender
2026-06-19
Hospitalityinside report published
Hospitalityinside reported on the rise of targeted holiday phishing campaigns, emphasizing WhatsApp as a new attack vector.
Hospitalityinside

More articles in this cluster (2)

Following this threat?

Track Booking in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed