Russian Hackers Target Hotel Wi-Fi Networks Globally
Microsoft has issued a warning about a hacking operation targeting hotel Wi-Fi networks worldwide. The company attributes the attacks to Russian state-sponsored hackers, Storm-2945, who are linked to the Foreign Intelligence Service (SVR).
The hackers have compromised numerous hospitality-related organizations' Wi-Fi networks, including hotels and conference centers. They use captive portals or guest logins to infect users' devices with malware that collects sensitive information, such as browser cookies, passwords, and documents.
When a user connects to a compromised network, they may see false windows designed to trick them into downloading malicious files. These fake prompts may resemble Windows Update screens, virus scans, or other legitimate software updates.
To avoid falling victim to this hacking operation, Microsoft advises users to exercise caution when using public Wi-Fi networks and to rely on private connectivity options whenever possible. They should also be wary of pop-up requests and avoid downloading software updates presented through captive portals or unexpected web prompts.