This page was machine-translated and may differ from the original. View original

Kaspersky Detects 270,000 Travel Brand Impersonation Attacks

Google 우선 소스Published2026.09.14 12:01


 
Phishing and Trojan Attacks Impersonating Emirates and Uber Intensify, 'Safe Travel Insights' Released
 
As travelers' dependence on digital platforms increases, cyber threats impersonating airlines, ride-hailing services, and accommodation booking platforms are spreading. Kaspersky announced on the 14th the release of 'Kaspersky Safe Travel Insights,' which contains analysis results of travel-related security threats and practical security guidelines, and urged caution against digital threats throughout the entire travel process.

Kaspersky announced on the 14th that it detected approximately 270,000 attack attempts impersonating major travel-related brands from Q2 2025 to Q1 2026.

Of these, detections related to transportation brands accounted for 262,663 cases, with Emirates representing 61% and Uber 37%, comprising 98% of total detections.

Detections related to travel and accommodation services totaled 5,414 cases, relatively fewer in number, but trojans accounted for 54.6% of these, indicating concentrated attacks aimed at stealing account information and payment data.
 
In terms of threat types among transportation brand-related detections, trojans represented the highest proportion at 30.5%, followed by banking trojans specialized in stealing bank account and payment information at 22.5%.

Attackers impersonate legitimate services through phishing pages, fake apps, and false discount offers.

Typical examples include impersonating Ryanair and inducing payment processing fees under the guise of providing "flight compensation," or luring users to fake booking pages similar to Booking.com to steal payment information and fraudulently obtaining money without actual reservations.
 
Evgeny Kuskov, Senior Security Researcher at Kaspersky, said, "Users booking flights or vehicles often move quickly and compare prices across multiple tabs, so they are likely to easily click on content that appears to be favorable conditions."
 
Kaspersky presented the following preventive measures to avoid damage: △booking directly through official websites and apps △verifying URLs before payment △being cautious of excessively favorable offers △enabling multi-factor authentication (MFA) on travel accounts △using VPN when using public Wi-Fi △prohibiting downloads of apps or files through untrusted QR code links.

Additionally, Kaspersky stated that using Kaspersky Premium with AI-based fraud prevention capabilities enables advance identification of phishing websites and fraudulent payment pages.
 
Lee Hyo-eun, General Manager of Kaspersky Korea, said, "Cybercriminals are exploiting situations where users make hasty decisions during the travel booking process. By verifying the authenticity of sources and utilizing multi-layered digital protection features, you can effectively protect personal and financial information while traveling."
To request a correction, reply or follow-up report on this article, see how to file a request. Previously published statements are collected in corrections & replies.
명세환 기자
명세환 Reporter

Comments