Supply chain β›“ Supply Chain

Otelier Hotel Management Platform Breach (Marriott, Hilton, Hyatt, Wyndham)

πŸ“… 2024-07-01 🏒 Otelier (formerly Hotel Effectiveness)
Primary Source β†—

Incident Details

Otelier, a cloud-based hotel management platform used by major hotel chains worldwide, was breached starting in approximately July 2024. Threat actors obtained employee credentials β€” believed to have been stolen via infostealer malware β€” and used them to access Otelier’s internal Atlassian tools and AWS S3 data storage containing customer reservation records. The breach affected guests at Marriott, Hilton, Hyatt, and Wyndham properties that used Otelier for reservation management. Exposed data included guest names, email addresses, home addresses, reservation dates, transaction information, and PII. Otelier notified affected hotel brands in late 2024/early 2025. This incident highlighted the vulnerability of the hospitality sector’s shared SaaS infrastructure, where a single vendor breach can cascade to hundreds of major hotel properties and millions of guests across multiple competing brands.

Technical Details

Initial Attack Vector
Threat actors compromised Otelier's hotel management SaaS platform by stealing credentials through an infostealer malware infection, then used those credentials to access Otelier's Atlassian systems and AWS S3 buckets containing hotel customer reservation data
Vendor / Product
Otelier (formerly Hotel Effectiveness)
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2024-07-01 Breach occurred
  2. 2025-01-10 Publicly disclosed
  3. 2025-01-10 Customers notified