Hackers are exploiting vulnerabilities in hotel Wi-Fi networks to steal Microsoft credentials from business travelers, even bypassing multifactor authentication. The attacks redirect users to fake login pages designed to capture usernames and passwords.
The scheme targets business travelers by compromising hotel Wi-Fi gateways. According to Fox News, these compromised gateways redirect unsuspecting users attempting to access the internet to fraudulent Microsoft 365 login pages.
These fake login pages are specifically crafted to circumvent multifactor authentication (MFA), a security measure designed to add an extra layer of protection beyond just a password. Hackers achieve this by rapidly submitting numerous MFA prompts, overwhelming the system and ultimately gaining access.
The motivation behind these attacks is credential theft – obtaining valid Microsoft 365 logins that can be used for further malicious activities.
We don't rate truth. We strip the spin and show you which perspectives covered the story. You decide.
Read the original coverage
💬 Comments
📜 Comment Policy