Best Western hack and data leak phishing emails "Your booking is currently being held for you, but it still requires a quick confirmation"
There is an active phishing campaign targeting Best Western customers using stolen booking data. Victims receive WhatsApp messages containing their real name, booking reference, hotel, and dates. I have: Contacted the hotel chain for further clarification and to find out why they are still leaking data a month or two after the original breach. Reported the business number to WhatsApp Reported the malware to CloudFlare. Here’s what the scam looks like and how to protect yourself. Shortly after making a booking I received a WhatsApp message from a US number +1 (564) 261-8249 asking me to confirm the booking, I clicked the link before realising it was a phishing scam which was obvious when presented with a form asking for payment. The reason it was convincing was that They send the message on WhatsApp so you'll receive it on your mobile while on the move and won't scrutinise the same was as you would an email. It comes from a business account that WhatsApp referred to as a "...