The breach involved unauthorized access to booking information, potentially exposing full names, email addresses, postal addresses, phone numbers, and communications between users and property providers.
The breach, detected and stopped within minutes by Basic-Fit's system monitoring, allowed attackers to exfiltrate data including full names, physical addresses, email addresses, phone numbers, dates of birth, and bank account details.
Cybernews reports that a threat actor claiming to have breached the enterprise intelligence software provider Infodesk has put up the compromised data for sale on a dark web forum.
A sprawling advertising-based surveillance apparatus known as Webloc, capable of tracking the historical movements of up to half a billion mobile devices, has been linked to law enforcement and intelligence agencies across Hungary, El Salvador, and numerous U.S. jurisdictions, according to an investigation by the University of Toronto's Citizen Lab, according to The Hacker News.
In a Texas court case in April 2026, the FBI presented evidence of recovered Signal messages from criminal defendant Lynette Sharp's iPhone, despite her having deleted the application.
An investigation by Bellingcat uncovered close to 800 Hungarian government email and password combinations in breach dumps, impacting ministries from defense to finance.