Omni Hotels says customers’ personal data stolen in ransomware attack

Date:

Share post:


Hotel chain giant Omni Hotels & Resorts has confirmed cybercriminals stole the personal information of its customers in an apparent ransomware attack last month.

In an update on its website posted Sunday, Omni said that the stolen data includes customer names, email addresses, and postal addresses, as well as guest loyalty program information. The company said the stolen data does not include financial information or Social Security numbers.

Omni said it shut down its systems on March 29 after identifying intruders in its systems. Guests reported widespread outages across Omni’s properties, including phone and Wi-Fi issues. Some customers said that their room keys stopped working. The hotel chain restored its systems a week later on April 8.

Omni has dozens of hotels across the United States and Canada, and employs more than 14,000 staff, per its website.

A ransomware gang called Daixin has taken credit for the breach.

The Daixin gang said in a post on its dark web site, which gangs typically use to publish stolen to extort a ransom for their victims, that it would soon leak reams of customer records dating back to 2017.

The gang did not post evidence of their claims, but shared portions of the allegedly stolen files with veteran data breach watcher DataBreaches.net. Per the publication, the gang claimed to steal 3.5 million Omni customer records. A sample of the stolen data shared with DataBreaches.net matched the types of customers’ personal information that Omni said was taken.

A spokesperson for Omni did not respond to a request for comment.

Daixin was the subject of a public advisory by U.S. cybersecurity agency CISA in October after the ransomware crew began targeting businesses across the U.S., including healthcare organizations. The Daixin gang previously took credit for several cyberattacks targeting U.S. hospitals and medical facilities.


Do you know more about the Sisense breach? To contact this reporter, get in touch on Signal and WhatsApp at +1 646-755-8849, or by email. You can also send files and documents via SecureDrop.



Source link

Lisa Holden
Lisa Holden
Lisa Holden is a news writer for LinkDaddy News. She writes health, sport, tech, and more. Some of her favorite topics include the latest trends in fitness and wellness, the best ways to use technology to improve your life, and the latest developments in medical research.

Recent posts

Related articles

Google lays off staff from Flutter, Dart and Python weeks before its developer conference

Ahead of Google’s annual I/O developer conference in May, the tech giant has laid off staff across...

Fisker starts new round of layoffs to ‘preserve cash’

EV startup Fisker Inc. is laying off more employees to “preserve cash,” one week after warning investors...

Epic Games says it will bring Fortnite to iPad after EU dubs iPadOS a ‘gatekeeper’ under DMA

On the heels of the EU’s decision to designate Apple’s iPadOS as another digital “gatekeeper” under its...

Meta confirms launch of a bonus program for creators on Threads

Meta’s Threads social network passed the 150 million monthly users mark recently, but the company is not...

Backflip raises $15 million to help real estate investors flip houses

Flipping houses is not for the faint of heart, no matter how fun or easy HGTV might...

Musk’s xAI shows there’s more money on the sidelines for AI startups

We’re off to an AI-heavy start to the week. OpenAI has a new deal with the Financial...

Getir pulls out of US, UK, Europe to focus on Turkey; 6,000+ jobs impacted

True to its business concept, Turkey’s “instant delivery” juggernaut Getir rose quickly. Now, with the quick commerce...

Ford’s BlueCruise hands-free system under investigation after fatal crashes

Federal safety regulators have opened an investigation into Ford’s hands-free driver assistance system, BlueCruise, after it was...