Indian Hotels Being Targeted by Russian Hacking Group for User Data: FireEye

Advertisement
By Indo-Asian News Service | Updated: 14 August 2017 17:33 IST
Highlights
  • APT28 is targeting the hospitality sector globally
  • APT28 uses various hacking techniques such as "EternalBlue"
  • "Indian organisations should have strong security controls in place"

A Russian hacking group "APT28" is targeting the hospitality sector globally and the Indian hotels and resorts must have strong Wi-Fi security in place to safeguard travellers' data from being stolen, a cyber-security company said on Friday.

APT28 has already attacked travellers in hotels throughout Europe and the Middle East in a campaign that dates back to July this year, according to the US-based company FireEye.

APT28 uses various hacking techniques, such as "EternalBlue" and "Responder" sniffing passwords from Wi-Fi traffic.

Advertisement

"One of the most concerning aspects of this operation is the victims included hotel guests who didn't do anything wrong. They didn't click a malicious link or open an attachment they shouldn't have. They simply used the Internet over Wi-Fi in their hotels," Subhendu Sahu, Acting Country Manager for India, FireEye, told IANS.

Advertisement

"Indian organisations should have strong security controls in place to detect attackers who compromise travelling employees' systems and then follow them home like an unwanted souvenir," Sahu added.

FireEye has claimed to have found a malicious document named "Hotel_Reservation_Form.doc", sent in spear phishing emails to multiple companies in the hospitality industry, including hotels in at least seven European countries and one Middle Eastern country.

Advertisement

APT28 used EternalBlue and Responder to spread laterally through networks and target travellers to steal usernames and hashed passwords.

According to FireEye, APT28, in an incident in 2016, gained initial access to a victim's network via credentials likely stolen from the hotel Wi-Fi network and hacked the victim's Outlook Web Access (OWA) account.

Advertisement

Once inside the network of a hospitality company, APT28 seeks machines that control both guest and internal Wi-Fi networks.

"Cyber espionage activity against the hospitality industry is typically focused on collecting information on or from hotel guests of interest rather than on the hotel industry itself, though actors may also collect information on the hotel as a means of facilitating operations," FireEye said.

"Business and government personnel who are travelling often rely on systems to conduct business other than those at their home office, and may be unfamiliar with threats posed while abroad," it added.

Travellers must be aware of the threats especially when in foreign countries and take extra precautions to secure their systems and data.

"Publicly accessible Wi-Fi networks present a significant threat and should be avoided whenever possible," FireEye warned.

There are also other hacking groups targeting travellers apart from APT28, including "South Korea-nexus Fallout Team" (also known as "Darkhotel") and "Duqu 2.0".

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. OTT Releases of the Week (Feb 16 - Feb 22): Know What to Watch This Weekend
  2. Motorola Edge 70 Fusion India Launch Teased; Might Launch With This Chip
  3. Here's When Xiaomi Will Launch the Xiaomi 17 and Xiaomi 17 Ultra Globally
  4. Xiaomi 17T, Xiaomi 17T Tipped to Launch Four Months Earlier Than Usual
  5. Xiaomi Teases a New Computing Device, New Tablet Expected to Launch Soon
  6. Google Launches Gemini 3.1 Pro; Pomelli Updated With Photoshoot Feature
  7. Realme P4 Lite With 6,300mAh Battery Launched at This Price in India
  8. Realme C83 5G Price Leaked; Here's How Much It May Cost in India
  9. Vivo V70 Elite Review: Vivo's V-Series Goes 'Elite'
  10. Samsung's One UI 8.5 Update Will Bring These Useful Upgrades to Bixby
  1. Xiaomi Teases India Launch of New Computing Device; New Tablet With Keyboard or Laptop Expected
  2. Realme C83 5G India Price, RAM and Storage Configurations Leaked Online
  3. Xiaomi 17 Series Global Launch Date Announced; Xiaomi 17, Xiaomi 17 Ultra Expected to Debut
  4. Google Blocked 266 Million Risky App Installs, Prevented 1.75 Million Policy-Violating Apps in 2025
  5. Motorola Edge 70 Fusion India Launch Teased on Flipkart; Leaked Marketing Image Hints at Snapdragon 7s Gen 4 SoC
  6. Google Releases Gemini 3.1 Pro With Ability to Execute Complex Tasks; Pomelli Gets New Photoshoot Feature
  7. Xiaomi 17T Pro, Xiaomi 17T Tipped to Launch Earlier Than Previously Expected, Chipset Details Leaked
  8. Google Chrome Updated With Split View, Built-In PDF Markup Tools, and More Features
  9. Realme P4 Lite Launched in India With 6,300mAh Battery, 13-Megapixel Camera: Price, Specifications
  10. Samsung Galaxy Buds 4 Leak Again as Dummy Units Surface Online: Expected Price, Features
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.