Company Details
holiday-inn-hotels
12,325
44,054
7211
holidayinn.com
0
HOL_2975596
In-progress


Holiday Inn Vendor Cyber Rating & Cyber Score
holidayinn.comMore than an iconic place to stay, Holiday Inn Hotels are a place to be in the moment–gathered to celebrate with family, laughing with friends, sharing a meal with the team, or just for some well-deserved me-time. No matter the reason you travel, when you’re here, you’re right where you’re meant to be. Book with us and become an IHG One Rewards member.
Company Details
holiday-inn-hotels
12,325
44,054
7211
holidayinn.com
0
HOL_2975596
In-progress
Between 750 and 799

Holiday Inn Global Score (TPRM)XXXX

Description: InterContinental Hotels Group PLC was targeted in a cyberattack that knocked its booking systems offline. An unauthorized activity created technical issues and resulted in its booking channels and other applications being significantly disrupted. IHG immediately implemented response plans, notified regulatory authorities and engaged external specialists to investigate the incident.
Description: The California Office of the Attorney General reported a data breach involving InterContinental Hotels Group on April 14, 2017. The breach occurred between September 29, 2016, and December 29, 2016, due to malware accessing payment card data at certain franchise locations in the Americas. The number of affected individuals is currently unknown, and specific types of information compromised might include cardholder names, card numbers, expiration dates, and security codes.
Description: Thieves gained access to the payment card systems of over 1,000 hotels owned by the InterContinental Hotels Group. The InterContinental San Francisco, Holiday Inn Resort – Aruba, and InterContinental Chicago Magnificent Mile are among the properties that are impacted. The inquiry found evidence of malware activity between September 29, 2016, and December 29, 2016, that was intended to obtain payment card information from cards used on-site at front desks at specific IHG-branded franchise hotel sites. The business emphasised that although some payment systems have been infiltrated by malware, there is no proof that credit card data was accessed thereafter.
Description: On February 3, 2017, the California Office of the Attorney General reported that Six Continents Hotels, Inc. (doing business as InterContinental Hotels Group - IHG) experienced a data breach affecting guests' payment card data at 12 properties. The breach involved malware installed on servers processing payment cards used at restaurants and bars from August 1, 2016, to December 20, 2016, but left front-desk card transactions unaffected; specific numbers of affected individuals are currently unknown.


No incidents recorded for Holiday Inn in 2026.
No incidents recorded for Holiday Inn in 2026.
No incidents recorded for Holiday Inn in 2026.
Holiday Inn cyber incidents detection timeline including parent company and subsidiaries

More than an iconic place to stay, Holiday Inn Hotels are a place to be in the moment–gathered to celebrate with family, laughing with friends, sharing a meal with the team, or just for some well-deserved me-time. No matter the reason you travel, when you’re here, you’re right where you’re meant to be. Book with us and become an IHG One Rewards member.


We are Accor We are more than 290,000 hospitality experts placing people at the heart of what we do, creating emotion for our guests, and nurturing passion for service and achievement beyond limits. Building on the strength of our teams and of our fully integrated ecosystem of leading brands, perso

Travel + Leisure Co., the world's leading vacation ownership and membership travel company, provides more than six million vacations to travelers every year. The company’s extensive Vacation Ownership portfolio includes trusted and iconic vacation club brands with a combined 270+ resorts worldwide,
Whitbread PLC is the owner of the UK’s favourite hotel chain, Premier Inn, as well as restaurant brands, Beefeater, Brewers Fayre, Table Table, Bar + Block and Cookhouse and Pub. Whitbread employs more than 35,000 people in more than 1,200 Premier Inn hotels and restaurants across the UK and German

Rosewood Hotel Group is one of the world’s leading global lifestyle and hospitality management groups. It encompasses four brands: ultra-luxury Rosewood; upper-upscale New World Hotels & Resorts; Asaya, an integrated well-being concept; and Carlyle & Co., a modern and progressive private members clu
With over 500 properties worldwide, Marriott Hotels has reimagined hospitality to exceed the expectations of business, group, and leisure travelers. Marriott Hotels, Marriott’s flagship brand of quality-tier, full-service hotels and resorts, provides consistent, dependable and genuinely caring

Marriott International, Inc. is based in Bethesda, Maryland, USA, and encompasses a portfolio of approximately 9,000 properties across more than 30 leading brands in 141 countries and territories. Its heritage can be traced to a root beer stand opened in Washington, D.C., in 1927 by J. Willard and

IHG Hotels & Resorts [LON:IHG, NYSE:IHG (ADRs)] is a global hospitality company, with a purpose to provide True Hospitality for Good. With a family of 19 hotel brands and IHG One Rewards, one of the world's largest hotel loyalty programmes, IHG has over 6,300 open hotels in more than 100 countries,

Jumeirah, a global leader in luxury hospitality and a member of Dubai Holding, operates an exceptional portfolio of 31 properties, including 33 signature F&B restaurants, across the Middle East, Europe, Asia and Africa. In 1999, Jumeirah changed the face of luxury hospitality with the opening of t
Aramark (NYSE: ARMK) proudly serves the world’s leading educational institutions, Fortune 500 companies, world champion sports teams, prominent healthcare providers, iconic destinations and cultural attractions, and numerous municipalities in 16 countries around the world with food and facilities ma
.png)
By Mark Fancourt I see Hyatt's been making headlines for all the "right" reasons lately. Standing firm against the digital marauders,...
A new four-part professional development series aimed at helping small businesses better understand and manage technology will launch in...
Christmas is supposed to be a time for celebrations, not cyber chaos. But for many businesses across Lancashire and Greater Manchester,...
Domestic abuse affects millions of people every year, often in unseen and deeply personal ways, and online threats toward victims can be...
Tuesday, June 24, 2025 7:11PM IST (1:41PM GMT). Mumbai, Maharashtra, India -- The 2nd Edition of the CyberSec Innovation Summit & Awards 2025,...
Friday, May 16, 2025 6:20PM IST (12:50PM GMT). thumb_71A1551_94863.JPG. Opening Ceremony of the 3rd Edition NBFC & Fintech Leadership Awards 2025.
Exabeam, a global cybersecurity leader that delivers AI-driven security operations, today announced the appointment of Mike Byron as Chief Financial Officer (...
The US Department of Justice is offering a $10 million reward for Mikhail Pavlovich Matveev.
Hotel chains are racing to ditch the plastic room key card and replace it with digital options like Apple Wallet and Google Wallet.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of Holiday Inn is http://www.holidayinn.com/.
According to Rankiteo, Holiday Inn’s AI-generated cybersecurity score is 790, reflecting their Fair security posture.
According to Rankiteo, Holiday Inn currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, Holiday Inn has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, Holiday Inn is not certified under SOC 2 Type 1.
According to Rankiteo, Holiday Inn does not hold a SOC 2 Type 2 certification.
According to Rankiteo, Holiday Inn is not listed as GDPR compliant.
According to Rankiteo, Holiday Inn does not currently maintain PCI DSS compliance.
According to Rankiteo, Holiday Inn is not compliant with HIPAA regulations.
According to Rankiteo,Holiday Inn is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
Holiday Inn operates primarily in the Hospitality industry.
Holiday Inn employs approximately 12,325 people worldwide.
Holiday Inn presently has no subsidiaries across any sectors.
Holiday Inn’s official LinkedIn profile has approximately 44,054 followers.
Holiday Inn is classified under the NAICS code 7211, which corresponds to Traveler Accommodation.
No, Holiday Inn does not have a profile on Crunchbase.
Yes, Holiday Inn maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/holiday-inn-hotels.
As of April 05, 2026, Rankiteo reports that Holiday Inn has experienced 4 cybersecurity incidents.
Holiday Inn has an estimated 14,067 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach and Cyber Attack.
Title: Cyberattack on InterContinental Hotels Group PLC
Description: InterContinental Hotels Group PLC was targeted in a cyberattack that knocked its booking systems offline. An unauthorized activity created technical issues and resulted in its booking channels and other applications being significantly disrupted.
Type: Cyberattack
Title: Data Breach at InterContinental Hotels Group
Description: Thieves gained access to the payment card systems of over 1,000 hotels owned by the InterContinental Hotels Group. The breach affected properties including the InterContinental San Francisco, Holiday Inn Resort – Aruba, and InterContinental Chicago Magnificent Mile. The inquiry found evidence of malware activity between September 29, 2016, and December 29, 2016, that was intended to obtain payment card information from cards used on-site at front desks at specific IHG-branded franchise hotel sites. The business emphasised that although some payment systems have been infiltrated by malware, there is no proof that credit card data was accessed thereafter.
Date Detected: 2016-12-29
Type: Data Breach
Attack Vector: Malware
Threat Actor: Unknown
Motivation: Financial Gain
Title: InterContinental Hotels Group Data Breach
Description: A data breach affecting guests' payment card data at 12 properties of InterContinental Hotels Group (IHG). Malware was installed on servers processing payment cards used at restaurants and bars from August 1, 2016, to December 20, 2016, but front-desk card transactions were unaffected.
Date Detected: 2017-02-03
Date Publicly Disclosed: 2017-02-03
Type: Data Breach
Attack Vector: Malware
Title: Data Breach at Six Continents Hotels, Inc.
Description: The California Office of the Attorney General reported a data breach involving Six Continents Hotels, Inc. (d/b/a InterContinental Hotels Group) on April 14, 2017. The breach occurred between September 29, 2016, and December 29, 2016, due to malware accessing payment card data at certain franchise locations in the Americas. The number of affected individuals is currently unknown, and specific types of information compromised might include cardholder names, card numbers, expiration dates, and security codes.
Date Detected: 2017-04-14
Date Publicly Disclosed: 2017-04-14
Type: Data Breach
Attack Vector: Malware
Common Attack Types: The most common types of attacks the company has faced is Cyber Attack.

Systems Affected: booking systemsbooking channelsother applications
Operational Impact: Significant disruption

Data Compromised: Payment card information
Systems Affected: Payment card systems
Payment Information Risk: ['High']

Data Compromised: Payment card data
Systems Affected: Servers processing payment cards
Payment Information Risk: High

Data Compromised: Cardholder names, Card numbers, Expiration dates, Security codes
Payment Information Risk: True
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Payment Card Information, , Payment card data, Cardholder Names, Card Numbers, Expiration Dates, Security Codes and .

Entity Name: InterContinental Hotels Group PLC
Entity Type: Corporation
Industry: Hospitality

Entity Name: InterContinental Hotels Group
Entity Type: Corporation
Industry: Hospitality
Location: Global

Entity Name: InterContinental Hotels Group (IHG)
Entity Type: Hospitality
Industry: Hotel
Location: Multiple locations

Entity Name: Six Continents Hotels, Inc. (d/b/a InterContinental Hotels Group)
Entity Type: Hospitality
Industry: Hotel
Location: Americas

Incident Response Plan Activated: True

Type of Data Compromised: Payment card information
Sensitivity of Data: High

Type of Data Compromised: Payment card data
Sensitivity of Data: High

Type of Data Compromised: Cardholder names, Card numbers, Expiration dates, Security codes
Sensitivity of Data: High


Source: California Office of the Attorney General
Date Accessed: 2017-02-03

Source: California Office of the Attorney General
Date Accessed: 2017-04-14
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: California Office of the Attorney GeneralDate Accessed: 2017-02-03, and Source: California Office of the Attorney GeneralDate Accessed: 2017-04-14.

Investigation Status: Investigation in progress
Last Attacking Group: The attacking group in the last incident was an Unknown.
Most Recent Incident Detected: The most recent incident detected was on 2016-12-29.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2017-04-14.
Most Significant Data Compromised: The most significant data compromised in an incident were Payment card information, , Payment card data, cardholder names, card numbers, expiration dates, security codes and .
Most Significant System Affected: The most significant system affected in an incident was booking systemsbooking channelsother applications and Payment card systems and .
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were security codes, card numbers, cardholder names, Payment card information, Payment card data and expiration dates.
Most Recent Source: The most recent source of information about an incident is California Office of the Attorney General.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Investigation in progress.
.png)
nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, two peer-facing consensus request handlers assume that the history index is always available and call blockchain.history_store.history_index().unwrap() directly. That assumption is false by construction. HistoryStoreProxy::history_index() explicitly returns None for the valid HistoryStoreProxy::WithoutIndex state. when a full node is syncing or otherwise running without the history index, a remote peer can send RequestTransactionsProof or RequestTransactionReceiptsByAddress and trigger an Option::unwrap() panic on the request path. This issue has been patched in version 1.3.0.
PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing it directly to httpx.stream() with follow_redirects=True. An attacker who controls the URL can reach any host accessible from the server including cloud metadata services and internal network services. This issue has been patched in version 1.5.95.
PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any HTTP request to the MCP server with an arbitrary Bearer token is treated as authenticated, granting full access to all registered tools and agent capabilities. This issue has been patched in version 4.5.97.
PraisonAI is a multi-agent teams system. Prior to version 4.5.97, the PraisonAI Gateway server accepts WebSocket connections at /ws and serves agent topology at /info with no authentication. Any network client can connect, enumerate registered agents, and send arbitrary messages to agents and their tool sets. This issue has been patched in version 4.5.97.
PraisonAI is a multi-agent teams system. Prior to version 4.5.90, MCPToolIndex.search_tools() compiles a caller-supplied string directly as a Python regular expression with no validation, sanitization, or timeout. A crafted regex causes catastrophic backtracking in the re engine, blocking the Python thread for hundreds of seconds and causing a complete service outage. This issue has been patched in version 4.5.90.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.