Supply chain
β Supply Chain
Otelier Hotel Management Platform Breach (Marriott, Hilton, Hyatt, Wyndham)
Primary Source βIncident Details
Otelier, a cloud-based hotel management platform used by major hotel chains worldwide, was breached starting in approximately July 2024. Threat actors obtained employee credentials β believed to have been stolen via infostealer malware β and used them to access Otelier’s internal Atlassian tools and AWS S3 data storage containing customer reservation records. The breach affected guests at Marriott, Hilton, Hyatt, and Wyndham properties that used Otelier for reservation management. Exposed data included guest names, email addresses, home addresses, reservation dates, transaction information, and PII. Otelier notified affected hotel brands in late 2024/early 2025. This incident highlighted the vulnerability of the hospitality sector’s shared SaaS infrastructure, where a single vendor breach can cascade to hundreds of major hotel properties and millions of guests across multiple competing brands.
Technical Details
- Initial Attack Vector
- Threat actors compromised Otelier's hotel management SaaS platform by stealing credentials through an infostealer malware infection, then used those credentials to access Otelier's Atlassian systems and AWS S3 buckets containing hotel customer reservation data
- Vendor / Product
- Otelier (formerly Hotel Effectiveness)
- Supply Chain Attack
- β Confirmed third-party / vendor compromise
Timeline
- 2024-07-01 Breach occurred
- 2025-01-10 Publicly disclosed
- 2025-01-10 Customers notified