CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft | Microsoft Security Blog

A Russian hacking group, Midnight Blizzard, is targeting hotel sign-in portals to infect travelers with malware and steal login information. These attacks have been ongoing since May 2026, impacting global travel.
Key takeaways
- Russian hackers target hotel Wi-Fi for data theft
- Malware delivered via compromised sign-in portals
- Travelers' personal and financial data at risk
- Attacks focus on credential harvesting
Why it matters
Travelers using public Wi-Fi at hotels are at risk of credential theft and malware infection. This highlights the need for robust security practices when accessing sensitive accounts on unsecured networks.

.jpg&w=800&output=webp&we&il)

