Story thread · 2 reports / 2 sources

Hackers are compromising hotel Wi-Fi gateways to hijack Microsoft 365 accounts

computerworld.com · 14d

Hackers are compromising hotel Wi-Fi gateways to hijack Microsoft 365 accounts

How the coverage leans

Across 2 sources · syndicated copies counted once

Traveling enterprise employees beware: Think twice before you log onto that oh-so-convenient public Wi-Fi. Since at least June, threat actors have been compromising “captive” Wi-Fi gateways and other portal appliances at hotels, conference centers, and similar shared venues to hijack users’ Microsoft 365 accounts, according to the ReliaQuest Threat Research team. Once a threat actor controls a gateway, they can silently redirect a user’s traffic to their own infrastructure and steal their Microsoft 365 credentials without ever touching the user’s device, compromising endpoints, or sending phishing links or malicious attachments. “The most dangerous element is that it operates at the network gateway, which sits beneath most of the trust assumptions users and devices make,” ReliaQuest told CSO Online. “It’s not necessarily an enterprise breach level event on its own, but it’s a very real risk to individual accounts.” Exploiting a ‘fundamental trust’ Domain Name System (DNS) poisoning, in

First report: Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials securityweek.com, 15d

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.