Security Notice Regarding the Cyberattack on our Property Management Software provider
Last updated: 27 July 2026
Our hotel software provider has informed us of a cyberattack on its systems. According to them, unknown attackers gained unauthorised access to its systems on 25 July 2026. The company currently assumes that personal data was accessed and stolen.
As a result, data relating to our guests and customers may also have been affected. However, the provider is currently unable to determine which hotels, individuals, records or booking periods are specifically affected. It is therefore not yet possible to confirm or rule out whether your data stored by us has been affected.
What data may have been affected?
According to the latest information provided by our provider, the following categories of data may have been affected:
- Names and contact details
- Postal addresses, telephone numbers and email addresses
- Booking and reservation details
- Arrival and departure dates
- Information relating to hotel stays
- Hotel invoices and guest registration data
- Dates of birth and countries of origin
- Contact details of company representatives
According to the information currently available, bank details and payment data were not affected.
What are the possible risks?
The potentially stolen data could be used for convincing fraud and phishing attempts. You may receive emails, WhatsApp messages, text messages or telephone calls that appear to come from our hotel or a booking platform and refer to an actual or previous reservation.
Such messages may ask you to make a payment to a fraudulent bank account or to re-enter your credit card or other payment details.
What should you do?
- Do not make payments in response to unexpected messages.
- Do not enter credit card or other payment details via links sent to you.
- Do not open suspicious attachments.
- Be particularly cautious if a message creates a sense of urgency or threatens to cancel your reservation.
- Verify any unexpected payment request directly with us using contact details you already know or those published on our official website.
The Garden Hotel Krefeld will not ask you via WhatsApp or an unexpectedly received link to re-enter your payment details.
What measures have been taken?
According to our software provider, the point of entry was closed immediately on 25 July 2026. The company reported the incident to the competent data protection authority and filed a criminal complaint. The investigation is continuing with the support of external specialists.
As a precaution, we have changed the passwords for our user accounts and associated email accounts and enabled multi-factor authentication. We are continuously reviewing any new information provided by the company.
Contact
If you have any questions or receive a suspicious message claiming to be from our hotel, please contact us directly:
Garden Hotel Krefeld
Wolfram Lawall e.K.
Schönwasserstraße 12A
47800 Krefeld
Germany
Telephone: +49 (0) 2151 53523-0
Email: sl@gardenhotel.de