BBC News reports that major online travel agency Booking.com had its customers in the U.S., UK, and other parts of the world impacted by fraud following a social engineering attack that involved the deployment of the Vidar information-stealing malware. Hotel staff have been lured to download malicious software with the Vidar infostealer by threat actors masquerading as guests who forgot their passports, with a Google Drive link purporting to have an image of the misplaced passport downloading the malware to determine Booking.com access and all clients with room reservations, a report from Secureworks revealed.
Source: SC Magazine