Skip To Content
BuzzFeed News Home Reporting To You

Utilizamos cookies, próprios e de terceiros, que o reconhecem e identificam como um usuário único, para garantir a melhor experiência de navegação, personalizar conteúdo e anúncios, e melhorar o desempenho do nosso site e serviços. Esses Cookies nos permitem coletar alguns dados pessoais sobre você, como sua ID exclusiva atribuída ao seu dispositivo, endereço de IP, tipo de dispositivo e navegador, conteúdos visualizados ou outras ações realizadas usando nossos serviços, país e idioma selecionados, entre outros. Para saber mais sobre nossa política de cookies, acesse link.

Caso não concorde com o uso cookies dessa forma, você deverá ajustar as configurações de seu navegador ou deixar de acessar o nosso site e serviços. Ao continuar com a navegação em nosso site, você aceita o uso de cookies.

Here’s How Hackers Used Airbnb To Rob Hosts’ Homes

The company has already introduced new security measures to prevent this kind of hack from happening again.

Posted on April 14, 2017, at 4:32 p.m. ET

Nurphoto / Getty Images

Airbnb says that its rating and review system builds trust between people and accomplishes the impossible — convincing people to let complete strangers sleep in their homes.

Well, some scammers found a way to use Airbnb’s ratings system to rob people. Airbnb calls the problem “account takeovers,” which, it said in a blog post published Thursday, has been “receiving increased attention” lately. But the company said it has been working for months on new security solutions.

@bchesky Airbnb account takeover, no (working!?!) UK number to call. Account details comprised. Airbnb response: we'll get back to you. WTF

Basically, account takeovers are when people hack into the profiles of guests who have built up good ratings and reviews on Airbnb, and use those accounts — with some minor tweaks to the personal details — to book stays in the homes of hosts that they then burglarize. The BBC spoke to at least three people who said they’ve been robbed this way.

Takeovers can also work in the reverse — hackers take over host profiles, and try to get unwitting guests to send them money.

“Our model is effective at stopping most account takeovers, but unfortunately there have been some incidents where hosts and guests have suffered. This is not acceptable to us, therefore we’re working around the clock to do everything we can to improve our detection and prevention method,” Airbnb CTO Nathan Blecharczyk wrote in the blog post.

Blecharczyk said the top three ways accounts get hacked is through malware, phishing, and password dumps. Going forward, users will get text-message notifications if details on their profile are changed, and they will be required to use two-factor authentication when logging in to Airbnb on a device that hasn’t previously been used to access their account.

Airbnb offers hosts a $1 million insurance policy, and a spokesperson said hosts whose homes are burgled via account takeovers are reimbursed by the company.

BuzzFeed News’ FinCEN Files investigation exposed massive financial corruption on a historic global scale. Want to support our journalism? Become a BuzzFeed News member.

ADVERTISEMENT