Public Wi‑Fi Risks Escalate as Captive Portal Attacks Target Travelers

TL;DR
Microsoft Threat Intelligence warns of the CaptiveCrunch campaign that targets hospitality wifi networks (hotels, airports, conference centers) by abusing captive portal prompts to phish credentials, push malware, and perform man-in-the-middle attacks. Travelers are urged to rely on private connections (mobile hotspots or cellular data), use an enterprise-managed travel router or VPN with a kill switch if public wifi must be used, carefully inspect login prompts, avoid downloading software through captive portals, and keep devices and apps up to date to minimize risk.
- Here's Why Microsoft Is Encouraging Users to Stay Off Public Wifi Networks Lifehacker
- Travelers targeted when logging into hotel Wi-Fi networks Malwarebytes
- CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft Microsoft
- Microsoft warns hackers are targeting hotel Wi-Fi networks: What to know, how to protect yourself ABC News - Breaking News, Latest News and Videos
- Microsoft warns hackers have compromised many hotel WiFi networks Mashable
Want the full story? Read the original reporting
Read on Lifehacker