Payment card details accessed in Motel One hack

The ransomware attack has been claimed by hacking gang ALPHV

Add bookmark
Exterior of a Motel One in Berlin, Germany, in black and white

Low-budget hotel chain Motel One has been the victim of a ransomware attack that exposed customers’ payment card details. 

News of the ransomware attack and subsequent data breach was made public on September 30, after Motel One made a post regarding it on its X page, saying: “Motel One has become the target of a hacker attack. Address data of customers was accessed, including 150 credit card details.” 

The hotel chain went on to say that those impacted by the data breach had been made aware, as had IT security, investigation and data protection authorities. The company also noted that its business operations were never at risk during the attack. 

While Motel One said via a press release that the malicious actors who launched the attack were “currently unknown”, responsibility for the data breach was claimed by ransomware gang ALPHV (also known as BlackCat).  

In a post made to its dark web data leaks site, the ransomware gang claimed that it had stolen 5.5 terabytes of data, including nearly 24.5 million files. 

According to ALPHV, the data stolen “include[s] PDF & RTF booking confirmations for the past 3 years containing names, addresses, dates of reservation, payment method, and contact information. Additionally, there is a significant amount of your customers' credit card data and internal company documents, which undoubtedly hold sensitive information.”

The ransomware gang went on to accuse Motel One’s management of “delaying and making excuses”, giving them five days to contact them regarding a ransom or “a catastrophe” will befall the hotel chain. This “catastrophe” is likely to be ALPHV leaking the stolen data, which they say “pose[s] significant reputational and legal risks”. 

Motel One has not yet publicly addressed ALPHV’s claims. 


Upcoming Events

Automotive Cyber Security, Connectivity & SDV Week 2025

18th - 20th November, 2025

Van der Valk Hotel Berlin Brandenburg, Germany

Automotive Cyber Security, Connectivity & SDV Week 2025

Digital Identity Week

1st - 2nd September 2026

Sydney, Australia

Digital Identity Week

Latest Webinars

From Dependencies to Defences: Navigating Software Supply Chain Security

2025-09-24

11:00 AM - 12:00 PM SGT

Learn how to defend your software supply chain from dependency threats and build resilient security...

Unpacking global regulatory frameworks to enhance third-party operational resilience

2024-11-14

11:00 AM - 12:00 PM EST

Join this webinar to explore the resilience-focused requirements of DORA, NIS2 and other global regu...

Preventing financial and reputational risk with process intelligence

2024-05-23

11:00 AM - 12:00 PM EDT

Learn how to manage risk stemming from poorly controlled processes in a collaborative way

Recommended