started · updated
Microsoft warns of Russian hacking campaign targeting hotel Wi-Fi
Microsoft has issued an alert regarding a large-scale hacking campaign by Russian actors targeting wireless networks at hotels and conference centers worldwide. Since early May, attackers have been infiltrating hotel network infrastructures to steal Microsoft 365 login credentials and distribute malware to mobile devices.
The method involves manipulating internet traffic to present users with fraudulent verification checks, fake login windows, or deceptive update screens through legitimate hotel portals. In some instances, attackers trick users into approving attacker-generated authentication codes, allowing them to obtain valid authentication tokens and bypass two-factor authentication without needing a password.
Experts and the Norwegian Center for Information Security (NorsIS) warn that these deceptive networks make it easy for criminals to intercept passwords and sensitive information from travelers using public Wi-Fi.