惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Blog — PlanetScale
Blog — PlanetScale
Y
Y Combinator Blog
G
Google Developers Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
L
LangChain Blog
S
SegmentFault 最新的问题
J
Java Code Geeks
V
Visual Studio Blog
H
Help Net Security
Stack Overflow Blog
Stack Overflow Blog
aimingoo的专栏
aimingoo的专栏
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
T
Tailwind CSS Blog
Microsoft Azure Blog
Microsoft Azure Blog
博客园_首页
H
Hackread – Cybersecurity News, Data Breaches, AI and More
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - Franky
B
Blog RSS Feed
The Cloudflare Blog
MyScale Blog
MyScale Blog
月光博客
月光博客
Microsoft Security Blog
Microsoft Security Blog
美团技术团队

Check Point Blog

Reading the Signals in the OWASP LLM Top 10 2026 - Check Point Blog Ransomware Didn't Slow Down in Q2 2026. It Just Spread Out. - Check Point Blog July 2026 Cyber Threats Surge: Ransomware Attacks Double Year over Year as GenAI Data Exposure Widens - Check Point Blog State Sponsored Hackers Use Fake Job Offers to Deliver New Zero Day Exploit - Check Point Blog Lazarus Hackers Exploit Windows Zero-Day in Fake Job Scam Native AI Security Comes to Claude: Why Anthropic's Inference Hooks Matter - Check Point Blog Claude AI Security: How Anthropic Inference Hooks Enable Real-Time Protection The Top Exposure Management Questions Security Leaders Ask (Part 1) - Check Point Blog Black Hat 2026: Check Point Research Takes the Stage - Check Point Blog Check Point Joins the Open Secure AI Alliance to Advance Open, Measurable and Enterprise-Ready AI Security - Check Point Blog Three AI security disclosures, fourteen days: what the warnings signs are telling us - Check Point Blog When Data Becomes Instructions: AI Agents Need a Chain of Custody for Context - Check Point Blog Your VLAN Isn’t an Air Gap: Six Hard Truths From the New CI Fortify Guidance - Check Point Blog Check Point Named a Visionary Leader in the 2026 Frost Radar™ for Enterprise Risk Mitigation and Management Platforms - Check Point Blog AI Escaped a Sandbox. That is Not What Should Worry You - Check Point Blog Introducing the Industry's First AI Network Firewall - Check Point Blog Attackers Are Turning Microsoft's Trusted Login System Into Their Latest Phishing Weapon - Check Point Blog AI Agent Security Just Had Its Catalyst Moment - Check Point Blog Your AI Governance Policy Should Survive Your Next Model Change - Check Point Blog The Branding and Attribution Behind Cybercrime - Check Point Blog Which Brands Are Impersonated Most? Inside the Q2 2026 Brand Phishing Report - Check Point Blog Security Advisory - Action Required - July 2026 Security Update - Check Point Blog What the 2026 Exposure Gap Report Reveals About Remediation - Check Point Blog Inline Email Security and Microsoft 365: A Practical View of Mail Routing, Risk, and Prevention - Check Point Blog The State of Hybrid SASE: Built-In vs. Bolted-On - Check Point Blog AI Appreciation Day: Let's Be Honest About What We're Appreciating - Check Point Blog AI Security Is Never Finished: Building the Continuous Red Teaming Loop  - Check Point Blog AI Security Threats in 2026: Annual Insights from Check Point Research - Check Point Blog AI Agents are Only As Effective as Their Harness - Check Point Blog Email Agent Hijacking: The Hidden Threat That Breaks Post-Delivery Security - Check Point Blog How Check Point Email Security Stopped a Student Job Scam Before It Reached the Inbox - Check Point Blog Redefining the CISO Contract: From Securing the Business to Securely Doing Business - Check Point Blog
Travel Phishing and Cyber Attacks are Surging in 2026, Gr...
lizwu@checkpoint.com · 2026-06-15 · via Check Point Blog

Every summer, hundreds of millions of people book flights, reserve hotels, and plan vacations online. And every summer, cyber criminals show up to take advantage of exactly that. Check Point Research tracked the threat landscape heading into the 2026 summer travel season, and what they found should give travelers pause before they click “confirm booking.” 

The hospitality sector is under targeted attack 

The hospitality, travel, and recreation sector recorded 2,291 average weekly cyberattacks per organization in May 2026, a 24% increase compared to the same month last year. To put that in context, the global year-over-year rise across all industries was just 2%. The sector has more than doubled its attack volume since May 2023, growing from 1,032 to 2,291 weekly attacks per organization over three years, a cumulative increase of 122% over three years. 

This is not a general uptick in cyber crime that happens to touch travel. It is a deliberate, seasonal intensification targeting an industry that processes enormous volumes of personal and financial data precisely when people are distracted, rushing, and eager to secure a good deal. 

Nearly 50,000 fake travel domains registered in one month 

In May 2026 alone, 47,318 new travel-related domains were registered, up 33% from April and 19% higher than May 2025. Among those domains, one in every 112 is already classified as malicious or suspicious. Many others remain dormant for now, waiting to be activated as summer traffic peaks. 

Check Point Research identified three coordinated bulk-registration campaigns within the April and May data. The first revolves around over 210 sequentially numbered hotel-lure domains following templates like hotel-stay[N].com and stay-hotel[N].com, all pointing to a single automated actor building phishing infrastructure at scale. The second impersonates American Express and Lloyds Travel Choice, an affiliation of Lloyds Bank with travel reward lures, combining recognizable financial brand names with keywords like “happytrip” and “travelchoice” on .ink domains, a TLD frequently used for short-lived phishing operations. The third targets the brand “Fora Travel” across 108 distinct TLDs, including .cruises, .miami, and .international, a saturation strategy aimed at flooding multiple web domains with lookalike sites to increase the chances of intercepting travelers, no matter what they type into a browser. 

Fake Booking.com, Airbnb, and Skyscanner sites are already live 

Beyond infrastructure, Check Point’s threat intelligence identified active travel phishing sites impersonating some of the most trusted names in online travel booking. bookingni[.]com reproduces the Booking.com sign-in flow to harvest credentials and payment card details. A coordinated campaign using booking-cn[.]com and booking-hk[.]com targets Chinese-speaking travelers with localized versions of the Booking.com homepage, complete with RMB pricing and a “mid-year summer sale” banner timed to the booking peak. The same actor also operates booking-jp[.]com and booking-zh[.]com. 

airbnb-ca[.]com targets travelers planning a trip to Canada with a geo-specific impersonation site featuring Canadian Rockies photography and property listings for Montreal, Toronto, Vancouver, and Banff.  

And several domains operating under the Skyscanner name, including skyscanners[.]shop and skyscanners[.]life, display real-looking “presale price” hotel deals at Malaysian resorts before collecting deposits that go nowhere near an actual booking. 

How to protect yourself from hospitality & travel phishing scams 

Knowing that fake booking sites exist is useful. Knowing how to spot them is what actually keeps you safe. 

  • Type travel URLs directly into your browser rather than following links from emails or ads
  • Look carefully at the domain before entering any login or payment information, because a single letter of difference is exactly what these campaigns rely on
  • Use a credit card rather than a debit card for online bookings, since credit cards offer stronger fraud protection and easier dispute resolution
  • Enable two-factor authentication on any travel platform account you use regularly
  • If a deal feels unusually urgent or cheap, that pressure is usually engineered

Travel cyber security threats follow a predictable seasonal rhythm. The people behind fake booking sites plan around the summer surge just as carefully as legitimate businesses do, and they are ready well before most travelers start searching.