threat-intel
Russian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft says
High
Summary
Russian state-sponsored hackers, linked to the Midnight Blizzard group (part of APT29), are compromising hotel Wi-Fi networks worldwide to steal traveler login credentials and install espionage malware. The campaign uses fake login pages and deceptive update screens to deliver malware, primarily targeting corporate travelers and leveraging techniques like ClickFix. The activity is expanding beyond Windows computers to include Android devices, and the threat actors are targeting a wide range of organizations utilizing captive portal networks.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
