💻
Russian hackers APT29 hijack hotel Wi-Fi to steal credentials and deploy malware
💻 Technology

Russian hackers APT29 hijack hotel Wi-Fi to steal credentials and deploy malware

Microsoft has revealed that Russian state-sponsored group APT29 (Midnight Blizzard) is hijacking captive portal equipment in hotels and conference centres, redirecting guests to fake Microsoft 365 login pages or bogus update sites. The CornFlake malware steals files, credentials and device data, while CocoShell targets browser cookies, passwords and Microsoft tokens. Travellers are advised to avoid hotel Wi-Fi or use a VPN.

Comments

No comments yet