APT29 targets hospitality Wi-Fi with custom malware to harvest Microsoft 365 credentials
Russian state-sponsored group Midnight Blizzard (APT29) is conducting a global campaign against hotel Wi-Fi networks using custom malware to intercept and steal Microsoft 365 account credentials from business travellers. Hotels represent a soft target with weak network controls and high concentrations of corporate users.