Microsoft has issued an urgent warning for travelers using Wi-Fi in hotels.
A Storm-2945 campaign layers device code phishing onto hijacked hotel Wi-Fi to bypass MFA on Microsoft 365 accounts. Here's ...
Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals ...
Hackers are compromising hotel Wi-Fi gateways to redirect business travelers to fake Microsoft 365 login pages that can ...
The sign-in prompt in Office 365 or Microsoft 365 desktop apps may say device TPM problem, Trusted Platform Module ...
The hackers attack hospitality networks to display fake verification checks, sign-in prompts and software updates. The pages ...
Microsoft has confirmed a widespread Russian hacking campaign targeting hotel Wi-Fi networks is stealing Microsoft 365 ...
Windows Hello keys can be abused from signed-in Windows sessions to gain Entra ID access without extracting TPM-backed ...
Hotel Wi-Fi malware campaign CaptiveCrunch, attributed to Russia’s SVR-linked Midnight Blizzard, compromised hotel captive ...
Microsoft says Midnight Blizzard is hijacking hotel Wi-Fi to steal Microsoft 365 credentials and install CornFlake malware.
The Telegram-distributed service combines AI-assisted lures with device-code phishing and attacker-side session refresh, complicating containment after an account is breached.
Microsoft and security researchers say compromised hospitality networks are helping attackers target corporate travellers ...