Story thread · 2 reports / 2 sources
Hackers are compromising hotel Wi-Fi gateways to hijack Microsoft 365 accounts
computerworld.com · 14d

How the coverage leans
Across 2 sources · syndicated copies counted once
Traveling enterprise employees beware: Think twice before you log onto that oh-so-convenient public Wi-Fi. Since at least June, threat actors have been compromising “captive” Wi-Fi gateways and other portal appliances at hotels, conference centers, and similar shared venues to hijack users’ Microsoft 365 accounts, according to the ReliaQuest Threat Research team. Once a threat actor controls a gateway, they can silently redirect a user’s traffic to their own infrastructure and steal their Microsoft 365 credentials without ever touching the user’s device, compromising endpoints, or sending phishing links or malicious attachments. “The most dangerous element is that it operates at the network gateway, which sits beneath most of the trust assumptions users and devices make,” ReliaQuest told CSO Online. “It’s not necessarily an enterprise breach level event on its own, but it’s a very real risk to individual accounts.” Exploiting a ‘fundamental trust’ Domain Name System (DNS) poisoning, in
First report: Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials — securityweek.com, 15d
The conversation · 0
Sign in to join the conversation.
No comments yet — start the thread.