SECURITYMALWAREBYTES LABS
Travelers targeted when logging into hotel Wi-Fi networks
Microsoft has warned that a Russian group is exploiting hotel and hospitality Wi-Fi networks to target travelers via DNS and HTTP traffic manipulation. The campaign, named 'CaptiveCrunch,' uses phishing pages, malware like CornFlake and ChocoShell, and fake system update prompts to steal credentials and compromise devices. Malwarebytes advises using personal hotspots or VPNs with Kill Switch features to mitigate risks.
Mentioned
Related Signal
Adjacent reporting
- Russian hackers hijack hotel Wi-Fi networks to spy on travelers, Microsoft says
- Microsoft issues warning on Wi-Fi networks at hotels
- Hotel Wi-Fi phishing attack targets Microsoft logins
- Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts
- Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware