Tuesday, December 16, 2025
Google search engine
HomeTechnologyKaspersky warns travellers: Artificial Intelligence (AI)-powered attacks are targeting hotel guests

Kaspersky warns travellers: Artificial Intelligence (AI)-powered attacks are targeting hotel guests

JOHANNESBURG, South Africa, September 23, 2025/APO Group: Kaspersky’s Global Research and Analysis Team (GReAT) discovered a new wave of cyberattacks that took place between the period of June and August 2025, conducted by the threat group RevengeHotels, targeting hotels by gaining access to guests’ payment information. The group has been conducting attacks since 2015 and is now using Artificial Intelligence (AI) to make their attacks more effective and reach additional regions. According to analysis, many of the new malicious programs used in these attacks contain code likely generated with AI, making them more sophisticated and harder to detect. 

While hotels in Brazil have been the main target to date, such cyberattacks have also been reported in other countries around the globe. And considering that countries in Africa, including South Africa and Kenya, and Nigeria considered to be popular tourist destinations, and a popular business travel destination respectively, it is important to consider that no country or hotel is immune to becoming victims of such attacks.  

How the attacks work 

Сybercriminals are increasingly using AI to create new tools and make their attacks more effective. The threat actor sends phishing emails directly to hotel staff, often disguised as requests for reservations or job applications. Once a hotel employee interacts with these emails, malware called VenomRAT is installed on the hotel’s systems, giving attackers access to guests’ payment data and other sensitive information. The emails often look convincing, coming from legitimate-looking websites.  

“Сybercriminals are increasingly using AI to create new tools and make their attacks more effective. This means that even familiar schemes, like phishing emails, are becoming harder to spot for a common user. For hotel guests, this translates into higher risks of card and personal data theft, even when you trust well-known hotels,” comments Lisandro Ubiedo, expert at Kaspersky’s Global Research and Analysis Team.

To stay safe, Kaspersky recommends: 

  • Even if an email seems friendly, treat links and attachments with care. To protect your company, use solutions that provide real-time protection, threat visibility, investigation, and response capabilities of EDR and XDR for organisations of any size and in any industry. 
  • Cybercriminals often distribute fake email messages mimicking email notifications from an online store or a bank, luring a user to click on a malicious link and distribute malware. If attackers are specifically targeting your organisation, the email text may be more customised, mimicking services or scenarios familiar to your company. With that in mind, fine-tune your anti-spam settings and never open attachments sent by an unknown sender.
  • Try not to open unexpected files sent by you massively. They may be ransomware or even spyware, even attachments from official-looking emails.

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -
WIA Initiative

Most Popular

Recent Comments