ADVERTISEMENT

Room for error: European hotel chain exposes millions of guests' data

Arrival times, price paid, and contact details – over 24 million records with sensitive data were left passwordless online, putting hotel customers at risk.

Honotel breach

Image by Cybernews.

Paulina Okunytė
Paulina Okunytė Senior Journalist
January 15, 2025 Updated: December 8, 2025 1 min read

What kind of data was leaked?

  • Names
  • Emails
  • Phone numbers
  • Date of birth
  • Country code
  • Language code
  • Information about hotel visits
  • Detailed stay information, including arrival time, nights booked, price paid, and number of guests
  • Loyalty points
  • Property IDs
honotel sample
Sample of the leaked data. Image by Cybernews.
ADVERTISEMENT

Leaked data puts hotel guests at risk

Niamh Ancell Neilc Marcus Walsh Stefanie
Stay informed and get our latest stories on Google News
Add us as your Preferred Source on Google.
  • Secure storage with proper access controls and ensure that it is password-protected
  • Notify the affected clients so they can take precautionary measures.
  • Conduct a thorough security audit to identify and rectify any other potential vulnerabilities
  • Implement regular security monitoring and incident response protocols
  • Educate employees about data security best practices to prevent future breaches

  • Leak discovered: October 4th, 2024
  • Initial disclosure: October 5th, 2024
  • Leak closed: October 7th, 2024
ADVERTISEMENT