Washington Hotel Japan Ransomware Attack Disclosed


Washington Hotel in Japan suffered a ransomware attack on February 13, 2026, at 22:00 local time. Hackers breached servers and accessed business data. The chain runs 30 properties with 11,000 rooms and 5 million annual guests.

Staff cut internet access right away to stop spread. They set up a task force and called in police plus external experts. Operations face minor hits like credit card outages at some sites.

Customer data looks safe. It sits on separate servers run by another firm with no breach signs. Financial losses stay under review with more updates promised.

Washington Hotel posted the full notice on its site. They confirm the intrusion hit business data only. 

Fujita Kanko Inc., the parent under WHG Hotels, handles the brand.

No ransomware group claimed it yet on dark web sites. Checks show no links to active extortion leaks.

Incident Impact

Some hotels lost credit card processing. Core services run on. Guests see no major disruptions.

Business data exposed includes internal files. Investigation checks full scope.

Japan faces rising attacks. Recent hits: Nissan data leak, Muji sales halt, Asahi brewery ransom, NTT breach on 18,000 firms.

JPCERT/CC warned of CVE-2026-25108 in Soliton FileZen. This command injection flaw targets file-sharing tools common in Japan.

Recent Japan BreachesTargetDate/Details
NissanAutomakerThousands exposed via Red Hat
MujiRetailRansomware on supplier
AsahiBreweryQilin claim, data leak
NTTTelecom18,000 companies hit
Washington HotelHospitalityServers breached Feb 13
  • 30 locations affected variably.
  • 11,000 rooms total.
  • No confirmed customer PII leak.

Response Steps

  • Servers isolated immediately.
  • Police and experts engaged.
  • Ongoing probe for data scope.
  • Updates via official channels.

FAQ

When did the Washington Hotel attack happen?

February 13, 2026, 22:00 JST.

Was customer data stolen?

Unlikely; stored separately with no access confirmed.

What operations are disrupted?

Credit card terminals at some hotels; no big issues.

Has a ransomware group claimed it?

No claims on monitored sites as of February 17.

What else targets Japan firms?

Nissan, Muji, Asahi, NTT; plus FileZen CVE-2026-25108.

Readers help support VPNCentral. We may get a commission if you buy through our links. Tooltip Icon

Read our disclosure page to find out how can you help VPNCentral sustain the editorial team Read more

User forum

0 messages