CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Threat Landscape Report: Uncovering Critical Cyber Threats to Hospitality and Recreation

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 4878

As cited

Copy frozen at (site build).

threat intel

Threat Landscape Report: Uncovering Critical Cyber Threats to Hospitality and Recreation

A threat landscape report covering September 2024 through February 2025 identifies a 433% surge in attacks against external remote services (VPNs, RDP, VDI) in the hospitality and recreation sector, with a January 2025 brute-force campaign compromising 2.8 million IP addresses. Ransomware attacks rose 43% with 109 victims listed on data-leak sites, driven by groups including Medusa, RansomHub, Play, and Akira, while impersonation campaigns and credential harvesters account for nearly half of phishing attempts targeting the sector. Emerging threats include insider risks tied to AI-driven workforce displacement and cryptocurrency theft by nation-state actors such as North Korea's Lazarus Group.

Why it matters: Hospitality, entertainment, and gambling organizations face intensifying multi-vector attacks targeting remote access infrastructure, customer credentials, and operational systems; practitioners should prioritize MFA, conditional access policies, VPN patching, and network segmentation for IoT devices. Entertainment and gambling companies must implement digital risk protection tools and domain monitoring to counter credential harvesters and social media impersonation. Security teams should secure cryptocurrency payment systems and monitor for insider threats, particularly among staff affected by AI adoption.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Threat Landscape Report: Uncovering Critical Cyber Threats to Hospitality and Recreation

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Threat Landscape Report: Uncovering Critical Cyber Threats to Hospitality and Recreation

A report covering September 1, 2024, to February 28, 2025, highlights a 433% increase in attacks on external remote services like virtual private networks (VPNs) and Remote Desktop Protocol (RDP) in the hospitality and recreation sector, alongside a 43% rise in ransomware incidents. Credential harvesting via phishing and impersonation campaigns also surged, with nearly half of phishing emails containing fake login pages, while groups such as Medusa and Akira targeted casinos and intellectual property. Cryptocurrency adoption in gambling and insider threats tied to artificial intelligence (AI) adoption further elevated risks.

Why it matters: Hospitality, recreation, and gambling organizations face elevated exposure to credential theft, ransomware, and IoT-based attacks, requiring immediate review of remote access, phishing defenses, and network segmentation.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Threat Landscape Report: Uncovering Critical Cyber Threats to Hospitality and Recreation

A report covering September 1, 2024, to February 28, 2025, highlights a 433% increase in attacks on external remote services like virtual private networks (VPNs) and Remote Desktop Protocol (RDP) in the hospitality and recreation sector, alongside a 43% rise in ransomware incidents. Credential harvesting via phishing and impersonation campaigns also surged, with nearly half of phishing emails containing fake login pages, while groups such as Medusa and Akira targeted casinos and intellectual property. Cryptocurrency adoption in gambling and insider threats tied to artificial intelligence (AI) adoption further elevated risks.

Why it matters: Hospitality, recreation, and gambling organizations face elevated exposure to credential theft, ransomware, and IoT-based attacks, requiring immediate review of remote access, phishing defenses, and network segmentation.

VendorsPalo Alto NetworksSonicWallSlack
Actorsakiraransomhubplaymedusalazarus group
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary