Feed›APT & Nation-State›Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizza...
APT & Nation-StateCyber Insider
8.0 — CRITICAL

Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackers

📅 3 August 2026 at 11:15 UTC📰 Cyber InsiderView original source ↗
Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackers

Microsoft has attributed an ongoing campaign targeting travelers on hotel and other hospitality Wi-Fi networks to a subgroup of the Russian state-sponsored hacking group Midnight Blizzard, warning that the attacks go beyond credential theft to also deploy malware on victims' devices. The findings expand on research released by ReliaQuest last month documenting attackers compromising captive … The post Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackers appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A subgroup of the Russian state-sponsored hacking group Midnight Blizzard, tracked as Storm-2945, has been targeting travelers on hotel and hospitality Wi-Fi networks with malware deployments beyond credential theft.

⚙️Technical Details
Affected Systems
hotel Wi-Fi networkscaptive portal infrastructure
Attack Vectors
manipulation of DNS and HTTP trafficadversary-in-the-middle (AiTM) attacks against Microsoft 365 usersmalware disguised as browser updates, Windows updates, driver repair tools, or network troubleshooting utilities
💥Impact Assessment
Severity: high
Who Is at Risk
travelers on hotel and hospitality Wi-Fi networksSeverity: high
🛡️Recommended Actions
1use mobile hotspots or enterprise-managed VPNs whenever possible
2avoid software downloads or update prompts presented through captive portals
3enable phishing-resistant authentication such as passkeys and multifactor authentication
📦Affected Products
Microsoft 365

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider ↗
← Back to feed