
Analysis of crime reports by the National Fraud Intelligence Bureau has revealed that the hospitality sector is increasingly being targeted by criminals impersonating IT providers.
Typically, fraudsters call restaurants and hotels purporting to be a representative of the company that provides their reservation or booking system. They then attempt to convince the employee to reveal their login details, under the guise that it is required in order to complete an important software installation.
Once the attacker gains access to the business’ computer systems they’ll often steal customer data which can then be used to perpetrate targeted phishing scams.
Even if you do not operate in the hospitality sector, it is important you take necessary steps to protect your business:
- Ensure that business accounts are protected using 2-step verification (2SV)
- Make sure your employees know what information a supplier will and won’t ask for, eg a supplier will never ask for passwords. Encourage your employees to speak to a supervisor or colleague if they’ve received a request they are unsure about.
- If you are a business, charity or other organisation suffering a live cyber attack (in progress), please call 0300 123 2040 immediately. This service is available 24/7
- For advice on how to improve your business’ cyber security, please see the National Cyber Security Centre’s Small Business Guide