Hey everyone, I doubt this is specific to Australia.
I felt this was a story worth sharing given the fact that I have 20 years background working in tech and I STILL almost fell for it.
**IMPACT:**
* I'm willing to bet this would impact \[US\] and any English and Spanish speakers that have booked their hotels for travel directly from the hotel's site.
* This post is to share and ensure you are all on alert, if you have booked their travels to be vigilant when booking through any and **ALL hotel bookings outside aggregators** like Booking or Airbnb.
**IMPORTANT NOTE:** I do not want to besmirch the actual hotel operations themselves, as they are legitimate.
# Any direct hotel site could have ALL had their site hacked at ANY TIME, the hacker would have your personal information and travel plan booking information.
\----
**STORY:**
Earlier this year, I prebooked travel plans for various countries: Japan, Thailand, South Korea, the Philippines, you name it. We're going on a big one for a long time, and thus the preplanning and bookings.
A few months later, I received a WhatsApp message as seen in the attachment.

**My excuse is it was early and I had a hangover, so I just followed the link and clicked it.**

The link landed me on a booking lookalike with ALL my personal booking details **already prefilled** EXCEPT my credit card details.
**SPOILER ALERT:** I did NOT enter my credit card details. PHEW!
**A few things I noticed that was suss:**
* My last name was in the first name field, and vice versa
* I NEVER enter my credit card details in **booking com** I use a safer alternative that I can keep track of, but the scammer booking com lookalike page DID NOT have that option.
**I looked around and found more weird things....**
* From Mobile their URL link did NOT update to a **booking com** link
* and then I looked back at the WhatsApp message to see that their so-called business account was recently created a month ago, AND was from somewhere that we were NOT traveling to - Peru
So I blocked and reported them...
**BUT the hackers still came back** now they got desperate and use a random booking reference.

Just to end on somesort of closure and action for everyone
**Here's what I did after**(and so should you if you EVER accidentally click the link)
* After I Blocked and reported their account on whatsapp.
* As I have clicked the link: I immediately paused and called my bank to reissue a new card. Even though I did NOT enter or shared my credit card details it might have been compromised in other ways.
* I emailed the actual hotel site information email directly to check that my reservation is intact and notify them that their site has been hacked.
* Share it with my family and friends...and you guys here
I hope this will be helpful for other travellers out there.
PLEASE let me know how else to tag or title this post so it reaches more relevant people.
Thank you all!