Cyber Risk & Resilence Quarterly - 2026 Q1

Paraskevas, Alexandros ORCID logoORCID: https://orcid.org/0000-0003-1556-5293 (2026) Cyber Risk & Resilence Quarterly - 2026 Q1. Technical Report. University of West london.

[thumbnail of Cyber_Risk_Resilience_Quarterly Q1 FINAL.pdf] PDF
Cyber_Risk_Resilience_Quarterly Q1 FINAL.pdf - Published Version
Restricted to Repository staff only

Download (939kB)

Abstract

The first quarter of 2026 saw a high number of cyberattacks on hotel groups, restaurant and food service operators, tourism businesses and their technology providers. This edition documents 24 confirmed incidents, eleven active threat actor profiles, and the ongoing PHALT#BLYX campaign against Booking.com.

The quarter was defined by identity. Stolen login details and social engineering opened the largest breaches. Ransomware groups combined encryption with data theft to push victims into paying. Operational disruption was a key feature, with payment terminals, ticketing systems and building controls taken offline at four organisations. Class action lawsuits followed within weeks at Panera Bread, Wynn Resorts and Choice Hotels.

The report maps each incident against five stages of a typical attack. It assesses the groups responsible, looks at how breaches were turned into money, and sets out the legal and regulatory exposure across Japanese, UK and US regimes. The recommendations follow the control failures observed during the quarter.

Item Type: Report (Technical Report)
Subjects: Computing > Information security > Cyber security
Date Deposited: 27 Jul 2026
Dates:
Date
Publication status
30 May 2026
Published Online
School, department or research centre: London Geller College of Hospitality and Tourism
URI: https://repository.uwl.ac.uk/id/eprint/15267
Sustainable Development Goals: Goal 9: Industry, Innovation, and Infrastructure

Actions (admin access)

View Item

Menu