Credit cards stolen by faked Booking.com site

In the attack described by Bleeping Computer, the attacker first establishes communication with a hotel and tricks them into installing info-stealing malware that operates silently on the hotel's computer. With access to messaging with legitimate customers, the cybercriminal can now send convincing messages to the final victims, the hotel customers.

The message requests additional credit card verification, leading the victim to a fake Booking.com payment page. Since the messaging appears to come genuinely from the hotel, the best way to detect this scam is to observe that the payment site is not running on the correct domain name.

Read the article on Bleeping Computer

Credit cards stolen by faked Booking.com site
Older post

Half of cyber-attacks go unreported

How hotel hackers redirected guests to a fake Booking.com site to steal credit cards

Newer post

How thousands of meta accounts got hacked and how that could have been prevented

How hotel hackers redirected guests to a fake Booking.com site to steal credit cards

Credit cards stolen by faked Booking.com site