Here’s what we know right now about Booking.com and security concerns.
- There have been reports in mid-April 2026 about a serious data breach affecting Booking.com, with attackers gaining access to guest booking data and using it for targeted fraud. Some outlets say names, emails, phone numbers, and booking details were involved.[1][2][3]
- Booking.com has stated they reset security PINs on affected reservations and are informing customers by email, while warning of increased phishing risk and advising vigilance against suspicious messages.[2][1]
- Several sources note this has led to a rise in “reservation hijacking” attempts and phishing campaigns, with scammers contacting guests via WhatsApp or other channels using real booking details to deceive victims.[3][1][2]
What you should do now
- If you have a Booking.com account or active reservations, check your email for any notices from Booking.com about security changes and follow their guidance to reset passwords or pins on affected reservations.[1]
- Be vigilant for messages or calls asking for payment or verification; authentic communications from Booking.com will not request sensitive payment details via email or messaging channels outside the platform.[1]
- Avoid clicking links in messages purporting to be from Booking.com or hotels; go directly to the Booking.com site or app to review reservations.[1]
Would you like a quick checklist tailored to your current bookings and steps to secure your account, or a summary of the main signs of reservation hijacking to watch for? I can also pull the latest verified updates from reputable outlets if you want a pinpointed news briefing.
Sources
Ein schweres Datenleck bei der Reiseplattform Booking.com betrifft unzählige Nutzer weltweit. Hacker haben Zugriff auf sensible Hotelreservierungen erlangt und nutzen das Material bereits aktiv für gezielte Betrugsversuche über WhatsApp aus.
winfuture.deBooking.com hat einen Hack im Jahr 2016 verschwiegen, der von einem Mann mit Verbindungen zu US-Geheimdiensten durchgeführt wurde.
www.golem.deHeute noch ein kleiner Sammelbeitrag rund um das Thema Cybersicherheit in Verbindung mit booking.com. Kürzlich informierte mich ein Leser über massiven booking.com-Spam und vermutete „einen…
www.borncity.comPhishing über Booking.com: Nutzer erhalten Fake-Nachrichten mit echten Buchungsdaten. Die Plattform? Reagiert kaum – und lehnt 2FA weiter ab. Hier geht's zum News-Artikel.
bearingpoint.servicesEin schwerer Datenleck bei Booking.com ermöglichte Zugriff auf persönliche Buchungsdaten, was zu einer Flut täuschend echter Phishing-Angriffe führte. Die Bedrohung wird durch KI-generierte Nachrichten verschärft.
borncity.comNeue Betrugsmasche bei Buchungsportal Booking.com ist Betreiber des gleichnamigen Webportals zur Buchung von Reiseunterkünften sowie Flügen und Mietwagen.
brandnew.travelink.deThe travel platform said it had changed Pins to protect customers but would not say how many were affected.
www.bbc.comTravel giant says names, contact details, dates, and hotel messages potentially exposed Booking.com is warning customers that their reservation details may have been exposed to unknown attackers, in the latest reminder that the travel giant still can't quite keep a lid on the data flowing through its platform.…
allsec.shBei Booking.com wurden sensible Buchungsdaten gestohlen, die nun für präzise Betrugsversuche gegen
www.ad-hoc-news.de