Ransomware gang NightSpire claims Hyatt data breach

A ransomware group known as NightSpire has claimed responsibility for hacking into Hyatt's systems and stealing data. The group states it has obtained nearly 50GB of files from the hotel chain, which it plans to sell. This incident highlights ongoing cybersecurity threats to the hospitality sector.

The ransomware gang NightSpire announced on January 20, 2026, that it had infiltrated Hyatt's computer systems and extracted sensitive information. According to the group's statement, the breach resulted in the theft of almost 50GB of data, which NightSpire is now offering for sale on underground forums.

Hyatt, a major global hospitality company, has not yet issued an official response to the claim as of the publication date. Such ransomware attacks often involve demands for payment to prevent data leaks, though NightSpire's specific demands remain unclear from available details.

This event underscores the persistent vulnerability of large corporations to cyber threats, particularly in industries handling customer data. Previous incidents in the hospitality sector have led to significant disruptions and financial losses, prompting increased investments in cybersecurity measures.

Experts note that verifying such claims is crucial, as some groups exaggerate breaches for notoriety. However, the volume of data mentioned suggests a potentially serious compromise if confirmed.

Relaterede artikler

Realistic illustration of a computer screen showing the VanHelsing ransomware attack targeting multiple operating systems, suitable for a cybersecurity news article.
Billede genereret af AI

VanHelsing ransomware RaaS targets multiple platforms

Rapporteret af AI Billede genereret af AI

A new ransomware-as-a-service operation called VanHelsing emerged on March 7, 2025, quickly claiming at least three victims. It supports attacks on Windows, Linux, BSD, ARM, and ESXi systems, with affiliates retaining 80% of ransoms after a $5,000 deposit. The group prohibits targeting entities in the Commonwealth of Independent States.

Hackers have accessed and stolen personal information from millions of Pornhub users, aiming to use the data for extortion schemes. The incident was highlighted in a WIRED security news roundup.

Rapporteret af AI

The operator of Hong Kong's Ngong Ping 360 cable car attraction detected irregularities in its internal network on Thursday and alerted police and the Office of the Privacy Commissioner for Personal Data. An investigation confirmed that certain data had been stolen, with the company facing a ransom demand. The firm has apologised to guests, employees, and stakeholders for the incident.

Korean Air, a major South Korean airline, has been affected by a supply-chain attack originating from Oracle, resulting in the exposure of thousands of its employees' information. The incident highlights vulnerabilities in third-party software services. Details emerged in a recent security report.

Rapporteret af AI

Personal information of about 4.5 million members of Seoul's public bike sharing service Ttareungyi is believed to have leaked in 2024, leading to a police investigation. The breach, suspected to be the work of hackers, is thought to have occurred around the time of widespread DDoS attacks on public institutions.

A massive data breach at e-commerce giant Coupang exposed personal information of 33.7 million customers from June 24 to November 8. Officials revealed the attacker exploited the company's electronic signature key, prompting a thorough government investigation. The incident has heightened public concerns over South Korea's data protection capabilities.

Rapporteret af AI

A former customer service agent at Coinbase has been arrested in India in connection with a major security breach. The incident, disclosed in May, involved hackers bribing support staff to access sensitive customer data and demanding a $20 million ransom. Coinbase estimates remediation costs could reach $400 million.

 

 

 

Dette websted bruger cookies

Vi bruger cookies til analyse for at forbedre vores side. Læs vores privatlivspolitik for mere information.
Afvis