Trending

    Russian hackers target hotel Wi-Fi networks to steal Microsoft 365 accounts

    Section editor: ·Low3 articles covering this·3 news sources·Updated 2 hours ago·World
    Share:
    Illustration of cyber threats targeting hotel Wi-Fi networks.

    Here's what it means for you.

    The recent campaign by Russian hackers highlights significant vulnerabilities in public Wi-Fi networks, particularly in hotels. As cyber threats evolve, both travelers and hospitality businesses must prioritize cybersecurity measures to protect sensitive information. This incident serves as a wake-up call for the industry to enhance security protocols and for individuals to adopt safer online practices.

    What happened

    Russian hackers have been hijacking hotel Wi-Fi networks to steal Microsoft 365 accounts. This operation, attributed to the group Midnight Blizzard, has been active since early May 2026. The attackers utilize captive portals to deploy malware, compromising user accounts through infostealers.

    Microsoft has issued a warning regarding this ongoing threat, advising travelers to exercise caution when connecting to hotel Wi-Fi. The campaign underscores the risks associated with public internet access and the need for increased vigilance among users.

    The Context

    The operation, named CaptiveCrunch, is linked to the Russian threat actor Midnight Blizzard, also known as APT29. Since May 2026, these attacks have demonstrated the persistence and sophistication of cybercriminals targeting vulnerable networks. The exploitation of captive portals to deploy malware raises concerns about the security of public Wi-Fi, particularly in the hospitality sector.

    As the attacks continue, the implications for both travelers and businesses are significant. Increased awareness of these vulnerabilities may lead to stronger cybersecurity measures across the hospitality industry, as stakeholders recognize the need to protect sensitive user information.

    Takeaway

    Looking ahead, travelers should consider using VPNs when connecting to hotel Wi-Fi networks to enhance their security. The hospitality sector may see a rise in cybersecurity measures as a direct response to these attacks. Additionally, there is potential for similar attacks targeting other public Wi-Fi networks, prompting a broader discussion on cybersecurity practices.

    As cyber threats evolve, it is crucial for both individuals and businesses to remain vigilant and adopt stronger security practices to safeguard sensitive information from malicious actors.

    3 Articles
    gHacks Technology News

    Microsoft Links Hotel Wi-Fi Attacks Stealing Microsoft 365 Accounts to Russian Hackers

    Microsoft has linked a series of cyberattacks targeting hotel Wi-Fi networks to the Russian hacking group Midnight Blizzard, also known as APT29. These attacks have been aimed at stealing Microsoft 365 accounts from unsuspecting users. The campaign h...

    TechSpot

    Microsoft warns Russian hackers are hijacking hotel Wi-Fi to steal user accounts

    Microsoft has issued a warning regarding a cyber operation named CaptiveCrunch, attributed to Russian hackers known as Storm-2945, a subgroup of the notorious Midnight Blizzard. These hackers have been hijacking hotel Wi-Fi networks since at least Ma...

    TechRadar

    Travelers beware — Microsoft experts warn hotel Wi-Fi can be hijacked to infect your devices with dangerous malware

    Microsoft experts have issued a warning that hotel Wi-Fi networks are being targeted by Russian criminals who exploit captive portals to deploy infostealers, potentially infecting travelers' devices with malware. This alarming trend highlights the vu...