Thieves gained access to the payment card systems of over 1,000 hotels owned by the InterContinental Hotels Group.
The InterContinental San Francisco, Holiday Inn Resort – Aruba, and InterContinental Chicago Magnificent Mile are among the properties that are impacted.
The inquiry found evidence of malware activity between September 29, 2016, and December 29, 2016, that was intended to obtain payment card information from cards used on-site at front desks at specific IHG-branded franchise hotel sites.
The business emphasised that although some payment systems have been infiltrated by malware, there is no proof that credit card data was accessed thereafter.
Source: https://securityaffairs.com/58129/data-breach/intercontinental-hotels-group-breach.html
TPRM report: https://scoringcyber.rankiteo.com/company/intercontinental-hotels-&-resorts
"id": "int133201123",
"linkid": "intercontinental-hotels-&-resorts",
"type": "Breach",
"date": "04/2017",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Hospitality',
'location': 'Global',
'name': 'InterContinental Hotels Group',
'type': 'Corporation'}],
'attack_vector': 'Malware',
'data_breach': {'sensitivity_of_data': ['High'],
'type_of_data_compromised': ['Payment card information']},
'date_detected': '2016-12-29',
'description': 'Thieves gained access to the payment card systems of over '
'1,000 hotels owned by the InterContinental Hotels Group. The '
'breach affected properties including the InterContinental San '
'Francisco, Holiday Inn Resort – Aruba, and InterContinental '
'Chicago Magnificent Mile. The inquiry found evidence of '
'malware activity between September 29, 2016, and December 29, '
'2016, that was intended to obtain payment card information '
'from cards used on-site at front desks at specific '
'IHG-branded franchise hotel sites. The business emphasised '
'that although some payment systems have been infiltrated by '
'malware, there is no proof that credit card data was accessed '
'thereafter.',
'impact': {'data_compromised': ['Payment card information'],
'payment_information_risk': ['High'],
'systems_affected': ['Payment card systems']},
'motivation': 'Financial Gain',
'threat_actor': 'Unknown',
'title': 'Data Breach at InterContinental Hotels Group',
'type': 'Data Breach'}