FB pixel

Italy: Nearly 100,000 ID scans from hotel guests found on dark web

Italy: Nearly 100,000 ID scans from hotel guests found on dark web
 

Italian authorities have discovered that a malicious actor has obtained tens of thousands of high-resolution scans of passports, ID cards and other documents taken from hotel guests during check-in.

The hacker, known as “mydocs,” posted 90,600 images for sale on the dark web in several batches between August 8th and 12th. The actor claimed to have obtained them through unauthorized access to hotel computer systems between June and August 2025.

The Agency for Digital Italy (AgID) believes that the incident affected 10 hotels, with more discoveries possible in the coming days. The illegal sale was detected with the help of its national cybersecurity protection body, the Computer Emergency Response Team (CERT-AGID), the agency announced last Wednesday.

“This data, once stolen, can be used for fraudulent purposes: from creating false documents to opening bank accounts, to social engineering attacks and digital identity theft, with potentially serious consequences for the victims, both financially and legally,” says AgID.

No official information has been released about the hotels involved. Cybersecurity company Hackmanac, however, claims that it has identified the hotels in question, naming several Italian hotels and one Spanish resort.

The Italian Data Protection Authority (DPA) has announced its own investigation and called on the affected hotels to immediately protect their data and warn affected customers. Tourist accommodation providers were also urged to process data through the state police-operated Alloggiati web portal for online guest registration.

Last year, InfoCert, the company that provides Italian digital identity service SPID, announced its data breach, including full names, tax codes, phone numbers and email addresses. 

Related Posts

Article Topics

 |   |   | 

Latest Biometrics News

 

Biometrics back digital government gains around the world

Digital government was in the spotlight this week on Biometric Update with the release of the OECD rankings and a…

 

MOSIP delves into biometric data quality considerations

Biometric data quality was in focus at MOSIP Connect 2026 in Rabat, Morocco, from policies for ensuring good enrollment practices…

 

NIST nominee pressed on AI standards, facial recognition oversight

The Senate Committee on Commerce, Science and Transportation on Thursday considered the nomination of Arvind Raman to serve as Under…

 

Trulioo’s Hal Lonas on how he applies aeronautics principles to fighting fraud

Rocket science is routinely held up as the ultimate example of a highly complex discipline. But Trulioo’s Hal Lonas found…

 

Vouched donates MCP-I framework to Decentralized Identity Foundation

An announcement from Seattle-based Vouched says it has formally donated its Model Context Protocol – Identity (MCP-I) framework to the…

 

California’s OS-based age verification law challenges open-source community

California’s new online safety bill, AB 1043 (the Digital Age Assurance Act), adopts a declared age model for operating systems….

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events