Hackers use DNS poisoning on hotel Wi‑Fi to steal Microsoft 365 accounts
Threat actors are compromising hotel and conference center Wi-Fi gateways to redirect travelers to fake Microsoft login pages and steal corporate accounts. The campaign has been active since at least June 2026 and appears to reuse techniques previously associated with the Russian state-backed hacking group APT28, although the researchers stopped short of attributing the activity … The post Hackers use DNS poisoning on hotel Wi‑Fi to steal Microsoft 365 accounts appeared first on CyberInsider.
Threat actors compromised hotel and conference center Wi-Fi gateways to redirect travelers to fake Microsoft login pages, stealing corporate accounts using DNS poisoning techniques associated with APT28 tradecraft.
Read the full article
This is a curated summary. The complete article is available at Cyber Insider.
