RANSOMWARE VICTIMHOSPITALITY AND TOURISMDUPLICATE CLAIM

HILTON.COM

HILTON.COM
clop📍 United States (US)📅 January 25, 2026
8
same group

Attack Intelligence

HILTON.COM was compromised in a ransomware attack attributed to clop in January 2026. The organization, operating in the Hospitality and Tourism sector in United States, was added to the group's data leak site as part of an extortion campaign.

clop operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

[AI generated] Hilton.com is the official online platform for Hilton Worldwide Holdings Inc., a global hospitality company. The site allows users to book rooms in more than 6,100 properties across 119 countries. These properties include luxury resorts, full-service hotels, and extended-stay suites from various Hilton brands such as Hilton Hotels & Resorts, Waldorf Astoria Hotels & Resorts, Conrad Hotels & Resorts, and more.

Additional Details

Other Victims — clop (8)

Quick Facts

CountryUnited States (US)
SectorHospitality and Tourism
Attack DateJan 25, 2026
DomainHILTON.COM
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

clop
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.