Russian‑linked group targets hotel Wi‑Fi to steal Microsoft 365 tokens

1 min read
Source: BleepingComputer
Russian‑linked group targets hotel Wi‑Fi to steal Microsoft 365 tokens
Photo: BleepingComputer
TL;DR Summary

Microsoft ties a global hospitality Wi‑Fi campaign to the Russian group Midnight Blizzard (Storm-2945), detailing DNS tampering and two malware families, CornFlake and ChocoShell, used to steal Microsoft 365 tokens and credentials via phishing, device-code prompts, and fake update pages; researchers urge treating hotel Wi‑Fi as untrusted, using MFA/passkeys, and avoiding corporate credentials on guest networks.

Share this article

Reading Insights

Total Reads

1

Unique Readers

17

Time Saved

4 min

vs 5 min read

Condensed

93%

85256 words

Want the full story? Read the original article

Read on BleepingComputer