Russian Hackers Target Hotel Wi-Fi Networks Worldwide
Microsoft has issued a warning to travelers about a new threat targeting hospitality venues in internet traffic manipulation attacks. The tech giant attributed the attacks to Russian state-sponsored hackers Storm-2945, a sub-cluster of the cyber group Midnight Blizzard.
The attacks, dubbed 'CaptiveCrunch,' involve hijacking guest Wi-Fi networks at hotels and other public venues worldwide. Users are then prompted to download malicious files, which infect their devices with malware that collects sensitive information such as browser cookies, passwords, documents, and keystrokes.
Microsoft warned users to exercise caution when using guest networks at hotels, conferences, airports, or other public venues. The company suggested relying on private connectivity, like phone hotspots, instead of public options whenever possible. Users should also avoid downloading software updates or security utilities presented through captive portals or unexpected web prompts.