Marriott International disclosed a security incident involving the Starwood Guest Reservation Database. Unauthorized access occurred starting in 2014. In 2018, an unauthorized party copied and encrypted data, demanding ransom. Marriott decrypted the data, confirming it came from the Starwood database. Approximately 500 million guests were affected, with 327 million having names, addresses, passport numbers, and some having encrypted payment card data. Marriott engaged security experts, notified law enforcement, and offered one year of WebWatcher monitoring.
Affected (this filing): 500,000,000