Expedia — Cyber Attacks, Breaches & Threat Activity

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
November 6, 2025
Last Seen
November 28, 2025

Expedia is a leading global online travel agency that enables bookings for hotels, flights, and related travel services.

Overview

Expedia is a leading global online travel agency that enables bookings for hotels, flights, and related travel services. In the current threat landscape, OTAs and the hospitality ecosystem are high-value targets for phishing, credential theft, and account compromises, with attackers focusing on hotel-booking platforms and traveler interactions, posing risk to Expedia customers and partners.

Related Threat Clusters

  • Phishing Campaign 'I Paid Twice' Targets Booking.com Hotels and Guests

    A phishing campaign named 'I Paid Twice' has been identified, targeting Booking.com hotel partners and their customers. Cybercriminals compromised hotel accounts to send phishing emails that tricked victims into…

    2 articles · Updated November 7, 2025
  • IRS Accesses Airline Travel Records Without Warrant Amid Data Sale Scandal

    The IRS accessed a database containing hundreds of millions of Americans' travel records without a warrant, as revealed in a letter from bipartisan lawmakers. This data was provided by the Airlines Reporting Corporation…

    2 articles · Updated November 19, 2025
  • Black Friday 2025 Sees Surge in Online Shopping Scams

    During Black Friday 2025, shoppers in Europe and the US are facing a significant increase in online scams, with cybercriminals impersonating major brands to exploit consumers. Action Fraud reports that £11.8 million was…

    43 articles · Updated November 20, 2025
  • ClickFix Phishing Campaign Targets Booking.com and Hotels

    A phishing campaign named ClickFix has been targeting hotels and their customers, exploiting compromised accounts on Booking.com. Cybercriminals have used malware to steal customer data and launch phishing attacks,…

    8 articles · Updated November 28, 2025
  • Global Phishing Campaign Targets Booking.com and Hotels

    A phishing campaign named 'I Paid Twice' has been targeting Booking.com partner hotels and their customers since April 2025. Cybercriminals are using compromised hotel accounts to send phishing emails that trick…

    1 article · Updated November 17, 2025
  • IRS Accessed Airline Travel Records Without Warrant

    The IRS accessed a database containing hundreds of millions of Americans' flight records without a warrant, revealing details such as travel dates and payment methods. This database is managed by the Airlines Reporting…

    2 articles · Updated November 19, 2025

Recent Intelligence Reports

  • Authorities warn of cyberattack targeting accommodation facilities — Vietnamnet.Vn · November 28, 2025
  • ARC Data Sale Scandal: Airlines’ Travel Records Used for Warrantless Surveillance — Thecyberexpress · November 19, 2025
  • ClickFix cyberattacks hit Vietnam's hospitality sector — En.Sggp.Vn · November 17, 2025
  • ClickFix Campaign Targets Hotels, Spurs Secondary Customer Attacks — Darkreading · November 10, 2025
  • Phishing Campaign “I Paid Twice” Targets Booking.com Hotels and Guests — Esecurityplanet · November 7, 2025
  • Travelers hit with phishing attacks from compromised hotel accounts — Scmagazine · November 7, 2025
  • “I Paid Twice” Phishing Campaign Targets Booking.com — Infosecurity-Magazine · November 6, 2025

CVSS v3.1 Breakdown