Travelers beware — Microsoft experts warn hotel Wi-Fi can be hijacked to infect your devices with dangerous malware



  • Microsoft reports Russian APT29 (Midnight Blizzard) hijacking captive portals in hotels and conference centers
  • Victims redirected to fake Microsoft 365 logins or bogus update pages, spreading CornFlake and CocoShell malware
  • CornFlake steals files, credentials, and device data; CocoShell targets browser cookies, passwords, and Microsoft tokens

Threat actors are taking over Wi-Fi networks in hotels and conference centers and using the log-in portals to steal credentials and deploy information-stealing malware, experts have claimed.

Researchers from Microsoft have published a new report outlining how they spotted Russian state-sponsored actors, known as Midnight Blizzard or APT29, attacking captive portal equipment – networking hardware and software that manages the login page users see before accessing public Wi-Fi.

https://cdn.mos.cms.futurecdn.net/euoWA3SymQA2cKKjmF37W4-1920-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img