Russian Hackers Hijack Hotel Wi-Fi Networks to Steal Sensitive Info
Microsoft has issued an urgent warning to travelers about a sophisticated hacking campaign that targets hotel internet networks. The operation, dubbed 'CaptiveCrunch,' is orchestrated by a Russian state-sponsored hacking unit tracked as Storm-2945.
The hackers infiltrate public Wi-Fi networks and guest login gateways used by hotels, conference centers, and airports around the globe. When guests attempt to join a compromised hotel network, the hijacked system prompts the user to download a file or log in through an altered gateway.
Once a traveler unwittingly downloads the malicious payload, the consequences are severe. The malware grants attackers complete remote command over the infected device and can extract stored browser cookies, saved passwords, and sensitive personal files.
Microsoft warns that hackers disguise malware as trusted software updates, deploying convincing pop-ups that imitate standard system maintenance screens. To avoid these attacks, travelers should bypass public networks entirely, refuse unexpected download prompts, and tighten corporate travel protocols.