Home/Incidents/Norwegian Cruise Line

Norwegian Cruise Line

3 Mar 2020 · National · Hospitality & Tourism
Data Leak / Misconfiguration HIGH ✓ Verified

What happened

An administrative credential exposure allowed unauthorized actors to log into a specialized partner travel agent portal, scraping active cruise bookings, traveler profiles, direct emails, and phone logs of global customers.

Incident details

Organisation
Norwegian Cruise Line
Date
3 Mar 2020
Attack type
Data Leak / Misconfiguration
Severity
HIGH
Sector
Hospitality & Tourism
State
National
Records affected
Unknown
Threat actor
Unknown

Source

itwire.com ↗
← Back to all incidents