Hackers Compromise Hotel Wi-Fi Gateways to Hijack Microsoft 365 Accounts
Employees connecting to hotel or conference Wi-Fi are being targeted through the network equipment managing their connection, allowing attackers to redirect them to fake Microsoft login pages without sending a phishing email or infecting their computers.
The campaign has operated since at least June 2026, according to research published by ReliaQuest, which identified compromised Wi-Fi gateways in several US cities, India, and Saudi Arabia, with connections involving employees from finance, legal, health care, energy, retail, and professional services organizations.
For context, a hotel guest can join the venue’s genuine Wi-Fi network and still be exposed. Once attackers obtain administrative access to its gateway, they can alter the system that directs internet traffic for every connected guest.
Compromised Wi-Fi Redirects Microsoft Logins
When a device requests a website, DNS converts its name into the numerical address needed to reach it. A compromised gateway can provide a false answer, sending the browser...
Copyright of this story solely belongs to hackread.com. To see the full text click HERE