Ransomware gang NightSpire claims Hyatt data breach

A ransomware group known as NightSpire has claimed responsibility for hacking into Hyatt's systems and stealing data. The group states it has obtained nearly 50GB of files from the hotel chain, which it plans to sell. This incident highlights ongoing cybersecurity threats to the hospitality sector.

The ransomware gang NightSpire announced on January 20, 2026, that it had infiltrated Hyatt's computer systems and extracted sensitive information. According to the group's statement, the breach resulted in the theft of almost 50GB of data, which NightSpire is now offering for sale on underground forums.

Hyatt, a major global hospitality company, has not yet issued an official response to the claim as of the publication date. Such ransomware attacks often involve demands for payment to prevent data leaks, though NightSpire's specific demands remain unclear from available details.

This event underscores the persistent vulnerability of large corporations to cyber threats, particularly in industries handling customer data. Previous incidents in the hospitality sector have led to significant disruptions and financial losses, prompting increased investments in cybersecurity measures.

Experts note that verifying such claims is crucial, as some groups exaggerate breaches for notoriety. However, the volume of data mentioned suggests a potentially serious compromise if confirmed.

관련 기사

Realistic illustration of a computer screen showing the VanHelsing ransomware attack targeting multiple operating systems, suitable for a cybersecurity news article.
AI에 의해 생성된 이미지

VanHelsing ransomware RaaS targets multiple platforms

AI에 의해 보고됨 AI에 의해 생성된 이미지

A new ransomware-as-a-service operation called VanHelsing emerged on March 7, 2025, quickly claiming at least three victims. It supports attacks on Windows, Linux, BSD, ARM, and ESXi systems, with affiliates retaining 80% of ransoms after a $5,000 deposit. The group prohibits targeting entities in the Commonwealth of Independent States.

Hackers have accessed and stolen personal information from millions of Pornhub users, aiming to use the data for extortion schemes. The incident was highlighted in a WIRED security news roundup.

AI에 의해 보고됨

홍콩 응옹핑360 케이블카 운영사가 목요일 내부 네트워크에서 이상 징후를 감지하고 경찰과 개인정보 보호전담원 사무실에 신고했다. 조사 결과 특정 데이터가 도난당한 것으로 확인됐으며, 회사는 몸값 요구를 받았다. 회사는 이 사건으로 손님, 직원, 이해관계자들에게 사과했다.

Korean Air, a major South Korean airline, has been affected by a supply-chain attack originating from Oracle, resulting in the exposure of thousands of its employees' information. The incident highlights vulnerabilities in third-party software services. Details emerged in a recent security report.

AI에 의해 보고됨

서울시 공공자전거 공유 서비스 '따릉이'의 약 450만 회원 개인정보가 2024년에 유출된 것으로 의심되며 경찰이 수사에 착수했다. 해커의 소행으로 추정되는 이번 사건은 DDoS 공격이 공공기관을 강타한 시기에 발생한 것으로 보인다.

전자상거래 대기업 쿠팡의 고객 3,370만 명 개인정보가 유출된 대규모 해킹 사건이 6월 24일부터 11월 8일까지 지속된 것으로 확인됐다. 정부는 전자 서명 키가 악용된 점을 밝히며 철저한 조사를 지시했다. 이 사건은 한국의 데이터 보호 능력에 대한 공공의 우려를 높이고 있다.

AI에 의해 보고됨

A former customer service agent at Coinbase has been arrested in India in connection with a major security breach. The incident, disclosed in May, involved hackers bribing support staff to access sensitive customer data and demanding a $20 million ransom. Coinbase estimates remediation costs could reach $400 million.

 

 

 

이 웹사이트는 쿠키를 사용합니다

사이트를 개선하기 위해 분석을 위한 쿠키를 사용합니다. 자세한 내용은 개인정보 보호 정책을 읽으세요.
거부