No results for “”

Security awareness · June 2026

Phishing attacks are targeting the hospitality industry

Including YCS customers — read what this means for your property

phishing-banner
Read the full advisory

YCS Security Team

Hi community, Phishing is a type of cyberattack where criminals impersonate a trusted source — a hotel, a booking platform, or a payment service — to trick people into clicking fake links or sharing sensitive information such as card details or login credentials. An active, coordinated phishing campaign is currently targeting hotels, guests, and booking systems across the global hospitality industry. Attackers are sending WhatsApp messages and emails to guests that appear to come from their hotel. These messages reference real booking details — name, hotel, stay dates — and ask guests to verify their payment through a fake link. The details look real because they are: attackers have accessed hotel systems to obtain them. Correct this to This is an industry-wide attack. Booking.com and several other major platforms have publicly confirmed they are affected by the same campaign. YCS customers are among those impacted.

  • Who is behind this attack and how it operates
  • How attacker tactics have evolved and what's changed recently
  • Every action YCS has taken to protect your platform and data
  • Known phishing domains and indicators of compromise
  • Security steps your property can take right now
  • Guest communication templates to raise awareness at your property
  • What to do if you believe your account has been compromised
material-symbols_contact-support-rounded (1)

YCS Community

Log in to the YCS community to read the full advisory and recommended actions.

Read the full advisory
material-symbols_contact-support-rounded

Not a YCS Customer?

Get in touch with our support team to request information or assistance

Contact our support team