ADN Tourism Sets the Record Straight on the Consequences of Piracy


L’ensemble des données a été récupéré par ADN Tourisme, alors que Vacansoleil, du groupe Maeva, a été piraté à son tour - Depositphotos

Dream Yacht


One week after the hack it experienced, ADN Tourisme can now gauge the scale of the damage and implement a fix to the information circulated by the cyber attackers.

The federation of institutional stakeholders indicates that the exfiltrated data would concern not 50,702 individuals but 2,869 users.

An important difference also concerns the amount of data stolen, which would not be 100 GB, but actually 91 GB, covering around 50,000 contractual documents.

Far from being trivial, the damages therefore appear considerably less significant than what the hackers claimed.


ADN Tourisme retrieved the exfiltrated data

Thus, it was not ADN Tourisme’s platform that was compromised, but the association’s legal site. And contrary to what had been claimed, not all of the data had been deleted, but was retrieved by the entity.

Moreover, no identifiers leaked since this involved a Single Sign-On (SSO) connection.

ADN Tourisme wishes to emphasize that it has never contracted with companies such as SNCF, Leroy Merlin, BPCE or ALPA GROUP.

To read: Three hacks in three days: why the tourism sector will have to prove its security

The compromise of the platform allowed the attackers to move into other platforms of the same service provider and thus to siphon contracts with these companies.

The tourism sector has endured a dark May, with a series of hacks that shows no sign of stopping.

Amara Nambinga

Amara Nambinga

I write about tourism, culture, and emerging destinations with a Namibian perspective. Through my articles, I try to highlight the places, people, and travel stories that show how Africa and the wider world are changing.