{"id":6256,"date":"2017-01-23T12:54:46","date_gmt":"2017-01-23T20:54:46","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2017\/01\/23\/news-109\/"},"modified":"2017-01-23T12:54:46","modified_gmt":"2017-01-23T20:54:46","slug":"news-109","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2017\/01\/23\/news-109\/","title":{"rendered":"Holiday Inn Parent IHG Probes Breach Claims"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-580x356.png\"\/><\/p>\n<p><strong>InterContinental Hotels Group (IHG)<\/strong>, the parent company for more than 5,000 hotels worldwide including <strong>Holiday Inn<\/strong>, says it is investigating claims of a possible credit card breach at some U.S. locations.<\/p>\n<div id=\"attachment_37384\" style=\"width: 590px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-37384 size-medium\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-580x356.png\" alt=\"An Intercontinental hotel in New York City. Image: IHG\" width=\"580\" height=\"356\" srcset=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-580x356.png 580w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-768x471.png 768w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-940x576.png 940w, https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny.png 943w\" sizes=\"auto, (max-width: 580px) 100vw, 580px\" \/><\/p>\n<p class=\"wp-caption-text\">An Intercontinental hotel in New York City. Photo: IHG.<\/p>\n<\/div>\n<p>Last week, KrebsOnSecurity began hearing from sources who work in fraud prevention at different financial institutions. Those sources said they were seeing a pattern of fraud on customer credit and debit cards that suggested a breach at some IHG properties &#8212; particularly Holiday Inn and <strong>Holiday Inn Express<\/strong> locations.<\/p>\n<p>Asked about the fraud patterns reported by my sources, a spokesperson for IHG said the company had received similar reports, and that it has hired an outside security firm to help investigate. IHG also issued the following statement:<\/p>\n<blockquote>\n<p>&#8220;IHG takes the protection of payment card data very seriously.\u00a0We were made aware of a report of unauthorized charges occurring on some payment cards that were recently used at a small number of U.S.-based hotel locations. \u00a0We immediately launched an investigation, which includes retaining a leading computer security firm to provide us with additional support.\u00a0\u00a0We continue to work with the payment card networks.&#8221;<\/p>\n<p>&#8220;We are\u00a0committed to\u00a0swiftly resolving\u00a0this\u00a0matter.\u00a0In the meantime, and in line with best practice, we recommend that individuals closely monitor their payment card account statements.\u00a0\u00a0If there are unauthorized charges, individuals should immediately notify their bank. Payment card network rules generally state that cardholders are not responsible for such charges.&#8221;<\/p>\n<\/blockquote>\n<p>Headquartered in Denham, U.K., IHG operates more than 5,000 hotels across nearly 100 countries. The company&#8217;s <a href=\"https:\/\/www.ihgplc.com\/our-brands\" target=\"_blank\">dozen brands<\/a> include Holiday Inn, Holiday Inn Express, <strong>InterContinental<\/strong>, <strong>Kimpton Hotels<\/strong>, and <strong>Crowne Plaza<\/strong>.<span id=\"more-37383\"><\/span><\/p>\n<p>Card-stealing cyber thieves have broken into some of the largest hotel chains over the past few years. Hotel brands that have acknowledged card breaches over the last year after prompting by KrebsOnSecurity include <a href=\"https:\/\/krebsonsecurity.com\/2016\/09\/kimpton-hotels-acknowledges-data-breach\/\" target=\"_blank\">Kimpton Hotels<\/a>,\u00a0<a href=\"http:\/\/krebsonsecurity.com\/2015\/07\/banks-card-breach-at-trump-hotel-properties\/\" target=\"_blank\">Trump Hotels<\/a> (<a href=\"http:\/\/krebsonsecurity.com\/2016\/04\/sources-trump-hotels-breached-again\/\" target=\"_blank\">twice<\/a>), <a href=\"http:\/\/krebsonsecurity.com\/2015\/09\/banks-card-breach-at-hilton-hotel-properties\/\" target=\"_blank\">Hilton<\/a>, <a href=\"http:\/\/krebsonsecurity.com\/2015\/03\/credit-card-breach-at-mandarian-oriental\/\" target=\"_blank\">Mandarin Oriental<\/a>, and <a href=\"http:\/\/krebsonsecurity.com\/2014\/01\/hotel-franchise-firm-white-lodging-investigates-breach\/\" target=\"_blank\">White Lodging<\/a> (<a href=\"http:\/\/krebsonsecurity.com\/2015\/04\/white-lodging-confirms-second-breach\/\" target=\"_blank\">twice<\/a>). Card breaches also have hit hospitality\u00a0chains <a href=\"http:\/\/krebsonsecurity.com\/2015\/11\/starwood-hotels-warns-of-credit-card-breach\/\" target=\"_blank\">Starwood Hotels<\/a>\u00a0and <a href=\"http:\/\/krebsonsecurity.com\/2016\/01\/hyatt-card-breach-hit-250-hotels-in-50-nations\/\" target=\"_blank\">Hyatt<\/a>.<span id=\"more-36174\"><\/span><\/p>\n<p>In many of those incidents, thieves planted malicious software on the point-of-sale devices at restaurants and bars inside of the hotel chains.\u00a0Point-of-sale based malware has driven most of the credit card breaches over the past two years, including intrusions at <a href=\"https:\/\/krebsonsecurity.com\/?s=target+breach&amp;x=0&amp;y=0\" target=\"_blank\">Target<\/a> and <a href=\"https:\/\/krebsonsecurity.com\/?s=home+depot+breach&amp;x=0&amp;y=0\" target=\"_blank\">Home Depot<\/a>, as well as breaches at <a href=\"https:\/\/krebsonsecurity.com\/?s=point-of-sale+vendor&amp;x=0&amp;y=0\" target=\"_blank\">a slew of point-of-sale vendors<\/a>. The malware usually is installed via hacked remote administration tools. Once the attackers have their malware loaded onto the point-of-sale devices, they can remotely capture data from each card swiped at that cash register.<\/p>\n<p>Thieves can then <a href=\"https:\/\/krebsonsecurity.com\/2014\/06\/peek-inside-a-professional-carding-shop\/\" target=\"_blank\">sell that data to crooks<\/a> who specialize in encoding the stolen data onto any card with a magnetic stripe, and using the cards to purchase high-priced electronics and gift cards from big-box stores like Target and Best Buy.<\/p>\n<p>Readers\u00a0should remember that they\u2019re not\u00a0liable for fraudulent charges on their credit or debit cards, but they still have to report the unauthorized transactions. There is no substitute for keeping a close eye on your card statements. Also, consider using credit cards instead of debit cards; having your checking account emptied of cash while your bank sorts out the situation can be a hassle and lead to secondary problems (bounced checks, for instance).<\/p>\n<p><a href=\"https:\/\/krebsonsecurity.com\/2016\/12\/holiday-inn-parent-ihg-probes-breach-claims\/\" target=\"bwo\" >https:\/\/krebsonsecurity.com\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/krebsonsecurity.com\/wp-content\/uploads\/2016\/12\/ihg-ny-580x356.png\"\/><br \/>InterContinental Hotels Group (IHG), the parent company for more than 5,000 hotels worldwide including Holiday Inn, says it is investigating claims of a possible credit card breach at some U.S. locations.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10643,10642],"tags":[10645,10646,10647,10644],"class_list":["post-6256","post","type-post","status-publish","format-standard","hentry","category-independent","category-krebs","tag-holiday-inn-breach","tag-ihg-breach","tag-intercontinental-hotels-group","tag-other"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/6256","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=6256"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/6256\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=6256"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=6256"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=6256"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}