Thursday, February 27, 2025
HomeCyber Security NewsRadisson Hotel Group Data Breach Exposed Customer's Personal Data

Radisson Hotel Group Data Breach Exposed Customer’s Personal Data

Published on

SIEM as a Service

Follow Us on Google News

Radisson hotel group suffered a data breach, unknown number of customer’s personal details accessed by hackers.

The intrusion was read by the company On October 1, 2018, and the company said the impacted clients will receive notification from Radisson Rewards between October 30 and 31, 2018.

Radisson hotel group was founded in 1960, it is one of the largest hotel group having more than 1,400 hotels in 114 countries.

Rewards identified a data security incident impacting a small percentage of our Radisson Rewards members and security incident not affected any card details reads the company security incident report.

According to their ongoing investigation following are the personal information accessed by the hackers that include member name, address (including country of residence), email address, and in some cases, company name, phone number, Radisson Rewards member number, and any frequent flyer numbers on file.

Also, the company confirms all the hotel stays and future reservation are not exposed and actions are taken to secure the impacted accounts.

Customers are advised to monitor their account for suspicious activity, attackers possibly use the exposed data to launch targeted attacks.

“Radisson hotel group confirms Radisson Rewards for Business member and a Radisson Rewards member was not affected. Radisson Rewards takes this incident very seriously and is conducting an ongoing extensive investigation into the incident.”

This is the tenth data breach reported in the month following Facebook, Google plus, Pentagon, Fitmetrix, HealthCare.gov, Pocket iNet, Burgerville and Cathay Pacific.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

GitLab Vulnerabilities Allow Attackers to Bypass Security and Run Arbitrary Scripts

GitLab has urgently released security updates to address multiple high-severity vulnerabilities in its platform...

LibreOffice Flaws Allow Attackers to Run Malicious Files on Windows

A high-severity security vulnerability (CVE-2025-0514) in LibreOffice, the widely used open-source office suite, has...

Cisco Nexus Switch Vulnerability Allows Attackers to Cause DoS

Cisco Systems has disclosed a high-severity vulnerability (CVE-2025-20111) in its Nexus 3000 and 9000...

Silver Fox APT Hackers Target Healthcare Services to Steal Sensitive Data

A sophisticated cyber campaign orchestrated by the Chinese Advanced Persistent Threat (APT) group, Silver...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

GitLab Vulnerabilities Allow Attackers to Bypass Security and Run Arbitrary Scripts

GitLab has urgently released security updates to address multiple high-severity vulnerabilities in its platform...

LibreOffice Flaws Allow Attackers to Run Malicious Files on Windows

A high-severity security vulnerability (CVE-2025-0514) in LibreOffice, the widely used open-source office suite, has...

Cisco Nexus Switch Vulnerability Allows Attackers to Cause DoS

Cisco Systems has disclosed a high-severity vulnerability (CVE-2025-20111) in its Nexus 3000 and 9000...