Get Started

Learn more about Credit Cards, Travel Programs, Deals, and more.

Platform Used by Expedia and Other Popular Booking Sites Leaks data of 10 Million Guests

This post may contain affiliate links - Advertiser Disclosure. As an Amazon Associate, we earn from qualifying purchases.

online travel booking data breach

Platform Used by Expedia and Other Popular Booking Sites Leaks data of 10 Million Guests

If you have used some of the most popular travel sites for your bookings in recent years, your personal data might have been exposed. Prestige Software, a platform that enables hotels to automate their availability on booking websites like Expedia, Booking.com and many others, reportedly stored files dating as far back as 2013 without any protections.

Exposed information included names, credit card details, ID numbers, and reservation details. More than 10 million customers could be affected by this.

It’s not clear yet how long the data was exposed, or whether anyone actually abused the security flaw. The company was storing years of credit card data from hotel guests and travel agents without any protection in place on Amazon Web Services, putting millions of people at risk of fraud and online attacks. Website Planet said the vulnerability was fixed a day after telling AWS about the exposure.

Prestige Software doesn’t list its clients on its website. But based on information from the data in question, the following websites are the ones affected:

  • Agoda
  • Amadeus
  • Booking.com
  • Expedia
  • Hotels.com
  • Hotelbeds
  • Omnibees
  • Sabre
  • and many others
Disclosure: Miles to Memories has partnered with CardRatings for our coverage of credit card products. Miles to Memories and CardRatings may receive a commission from card issuers.

 Chase Sapphire Preferred® Card

Chase Sapphire Preferred® Card is the old king of travel rewards cards. Right now bonus_miles_full

Learn more about this card and its features!


Opinions, reviews, analyses & recommendations are the author’s alone, and have not been reviewed, endorsed or approved by any of these entities.
DDG
DDGhttp://dannydealguru.com
Based in NYC. Points/miles enthusiast for years and actively writing about it for the last 6+ years at Danny the Deal Guru. I'm always looking out for deals. Making a few bucks is always nice, but the traveling is by far the best part of this business.

Responses are not provided or commissioned by the bank advertiser. Responses have not been reviewed, approved or otherwise endorsed by the bank advertiser. It is not the bank advertiser's responsibility to ensure all posts and/or questions are answered.

2 COMMENTS

  1. Oh wonderful, how did they not bother with the basics? You would think a company would at minimum review security policies annually. Let me guess our compensation will be a year of free credit monitoring. They should be fined to the teeth and then some

  2. Umm…ain’t that company’s slogan “We trust you. Trust Prestige!!”
    (www.prestige-soft.com)

    Glad to know my credit card date was ONLY exposed on Expedia, and Hotels.com, and the sites of “many others.”

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Related

7,703FansLike
9,903FollowersFollow
16,444FollowersFollow