Booking.com suffered a major data breach that exposed user profiles and reservation details, prompting the company to enforce a mandatory reset of booking PIN codes for affected customers. Users who receive an official notice from [email protected] should consider their account compromised and must verify communications carefully to avoid sophisticated phone scams and phishing that leverage the stolen itinerary and identity data. #Bookingcom #Reddit
Keypoints
- Personal and reservation data — including full names, emails, addresses, phone numbers, and ID details — were exfiltrated.
- Booking.com has initiated a mandatory reset of reservation PIN codes for affected users.
- Official breach notifications are sent only from [email protected]; receipt of that email confirms compromise.
- Attackers have used stolen data to make convincing phone calls and direct victims to phishing sites to harvest financial credentials.
- Booking.com says it discovered the incident internally and will provide 24-hour multilingual support but has not disclosed the breach’s technical cause or full scope.
Read More: https://securityonline.info/check-your-inbox-booking-com-forced-to-reset-pins-after-major-data-leak/