Skip to content

RevengeHotels: AI-Powered Cybercrime Group Targets Hotels

RevengeHotels is upping its game with AI. This cybercrime group is now using large language models to make its malicious code harder to detect.

there was a room in which people are sitting in the chairs,in front of a table looking into the...
there was a room in which people are sitting in the chairs,in front of a table looking into the laptop and doing something,beside them there are many flee xi in which different advertisements are present which different text.

RevengeHotels: AI-Powered Cybercrime Group Targets Hotels

A long-standing cybercrime group, known for targeting hotels, has been employing advanced tactics to enhance its malicious activities. Active since 2015, the group, dubbed 'RevengeHotels', has been stealing payment card data and is now leveraging AI to refine its attacks.

RevengeHotels initiates its attacks through phishing emails, cleverly disguised as invoices or job applications. Once the initial intrusion is successful, the group deploys 'VenomRAT', a remote access trojan, to infiltrate systems and steal sensitive data. VenomRAT, available for up to $650 on underground forums, offers functionalities like credential theft and data exfiltration.

To evade detection, the group frequently rotates its domains and payloads. This adaptability, coupled with the use of large language models (LLMs) to generate cleaner, more structured malicious code, makes RevengeHotels a formidable threat. In 2021, the group collaborated with an unidentified hacker to launch attacks in Brazil and other countries, indicating a growing sophistication in its operations.

Brazil has been the primary target of RevengeHotels, with recent phishing emails written in Spanish suggesting an expansion into other countries.

RevengeHotels' use of AI and large language models underscores the evolving nature of cyber threats. As the group continues to adapt and expand its targets, it is crucial for cybersecurity measures to keep pace with these advanced tactics.

Read also:

Latest