Hotel Wi-Fi Hacked: Business Travelers' Login Credentials at Risk
Hackers are compromising hotel Wi-Fi networks to steal Microsoft login credentials from business travelers. The attack, which has been active since at least June, involves tampering with the Domain Name System (DNS) settings of Wi-Fi gateways.
The attackers change the DNS configuration to redirect users to fake Microsoft 365 login pages. When a user attempts to access their Microsoft account, they are unknowingly directed to a page controlled by the hackers.
The campaign has been detected in several U.S. cities, with affected organizations spanning various industries including financial services, professional services, and healthcare.